2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-9737 | — | — | 0.5% | Mar 27, 2017 | IBM TRIRIGA 3.3, 3.4, and 3.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary ... |
| CVE-2016-8960 | — | — | 1.5% | Mar 27, 2017 | IBM Cognos Business Intelligence 10.2 could allow a user with lower privilege Capabilities to adopt the Capabilities of ... |
| CVE-2016-6102 | — | — | 1.1% | Mar 27, 2017 | IBM Tivoli Key Lifecycle Manager 2.5 and 2.6 stores sensitive information in URL parameters. This may lead to informatio... |
| CVE-2016-6056 | — | — | 0.5% | Mar 27, 2017 | IBM Call Center for Commerce 9.3 and 9.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed... |
| CVE-2016-9252 | — | — | 1.8% | Mar 27, 2017 | The Traffic Management Microkernel (TMM) in F5 BIG-IP before 11.5.4 HF3, 11.6.x before 11.6.1 HF2 and 12.x before 12.1.2... |
| CVE-2016-4912 | — | — | 5.3% | Mar 27, 2017 | The _xrealloc function in xlsp_xmalloc.c in OpenSLP 2.0.0 allows remote attackers to cause a denial of service (NULL poi... |
| CVE-2016-7474 | — | — | 0.4% | Mar 27, 2017 | In some cases the MCPD binary cache in F5 BIG-IP devices may allow a user with Advanced Shell access, or privileges to g... |
| CVE-2016-10272 | — | — | 1.8% | Mar 24, 2017 | LibTIFF 4.0.7 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspeci... |
| CVE-2016-10271 | — | — | 2.2% | Mar 24, 2017 | tools/tiffcrop.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (heap-based buffer over-read and ... |
| CVE-2016-10270 | — | — | 2.4% | Mar 24, 2017 | LibTIFF 4.0.7 allows remote attackers to cause a denial of service (heap-based buffer over-read) or possibly have unspec... |
| CVE-2016-10269 | — | — | 2.4% | Mar 24, 2017 | LibTIFF 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.4beta, 4.0.5, 4.0.6 an... |
| CVE-2016-10268 | — | — | 1.7% | Mar 24, 2017 | tools/tiffcp.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (integer underflow and heap-based b... |
| CVE-2016-10267 | — | — | 1.7% | Mar 24, 2017 | LibTIFF 4.0.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a cr... |
| CVE-2016-10266 | — | — | 1.7% | Mar 24, 2017 | LibTIFF 4.0.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a cr... |
| CVE-2016-7797 | — | — | 3.3% | Mar 24, 2017 | Pacemaker before 1.1.15, when using pacemaker remote, might allow remote attackers to cause a denial of service (node di... |
| CVE-2016-6206 | — | — | 3.8% | Mar 24, 2017 | Huawei AR3200 routers with software before V200R007C00SPC600 allow remote attackers to cause a denial of service or exec... |
| CVE-2016-2225 | — | — | 2.5% | Mar 24, 2017 | The __read_etc_hosts_r function in libc/inet/resolv.c in uClibc-ng before 1.0.12 allows remote DNS servers to cause a de... |
| CVE-2016-2224 | — | — | 2.8% | Mar 24, 2017 | The __decode_dotted function in libc/inet/resolv.c in uClibc-ng before 1.0.12 allows remote DNS servers to cause a denia... |
| CVE-2016-10133 | — | — | 2.4% | Mar 24, 2017 | Heap-based buffer overflow in the js_stackoverflow function in jsrun.c in Artifex Software, Inc. MuJS allows attackers t... |
| CVE-2016-10132 | — | — | 2.2% | Mar 24, 2017 | regexp.c in Artifex Software, Inc. MuJS allows attackers to cause a denial of service (NULL pointer dereference and cras... |
| CVE-2016-10130 | — | — | 1.7% | Mar 24, 2017 | The http_connect function in transports/http.c in libgit2 before 0.24.6 and 0.25.x before 0.25.1 might allow man-in-the-... |
| CVE-2016-10129 | — | — | 3.6% | Mar 24, 2017 | The Git Smart Protocol support in libgit2 before 0.24.6 and 0.25.x before 0.25.1 allows remote attackers to cause a deni... |
| CVE-2016-10128 | — | — | 3.9% | Mar 24, 2017 | Buffer overflow in the git_pkt_parse_line function in transports/smart_pkt.c in the Git Smart Protocol support in libgit... |
| CVE-2016-10149 | — | — | 3.9% | Mar 24, 2017 | XML External Entity (XXE) vulnerability in PySAML2 4.4.0 and earlier allows remote attackers to read arbitrary files via... |
| CVE-2016-9557 | — | — | 1.9% | Mar 23, 2017 | Integer overflow in jas_image.c in JasPer before 1.900.25 allows remote attackers to cause a denial of service (applicat... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now