2016 CVE Vulnerabilities

10,645 CVEs published in 2016.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2016-10028MEDIUM5.5The virgl_cmd_get_capset function in hw/display/virtio-gpu-3d.c in QEMU (aka Quick Emulator) built with Virtio GPU Devic...
CVE-2016-7510MEDIUM6.5The read_line_table_program function in dwarf_line_table_reader_common.c in libdwarf before 20160923 allows remote attac...
CVE-2016-6191MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in the View Raw Source page in the Web Calendar in SOGo before 3.1.3...
CVE-2016-6189MEDIUM4.3Incomplete blacklist in SOGo before 2.3.12 and 3.x before 3.1.1 allows remote authenticated users to obtain sensitive in...
CVE-2016-5037MEDIUM6.5The _dwarf_load_section function in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL ...
CVE-2016-5035MEDIUM6.5The _dwarf_read_line_table_header function in dwarf_line_table_reader.c in libdwarf before 20160923 allows remote attack...
CVE-2016-5034MEDIUM6.5dwarf_elf_access.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds write...
CVE-2016-5033MEDIUM6.5The print_exprloc_content function in libdwarf before 20160923 allows remote attackers to cause a denial of service (out...
CVE-2016-5032MEDIUM6.5The dwarf_get_xu_hash_entry function in libdwarf before 20160923 allows remote attackers to cause a denial of service (c...
CVE-2016-5031MEDIUM5.5The print_frame_inst_bytes function in libdwarf before 20160923 allows remote attackers to cause a denial of service (ou...
CVE-2016-5030MEDIUM6.5The _dwarf_calculate_info_section_end_ptr function in libdwarf before 20160923 allows remote attackers to cause a denial...
CVE-2016-5029MEDIUM6.5The create_fullest_file_path function in libdwarf before 20160923 allows remote attackers to cause a denial of service (...
CVE-2016-5028MEDIUM6.5The print_frame_inst_bytes function in libdwarf before 20160923 allows remote attackers to cause a denial of service (NU...
CVE-2016-8681MEDIUM5.5The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to caus...
CVE-2016-8680MEDIUM6.5The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to caus...
CVE-2016-8679MEDIUM6.5The _dwarf_get_size_of_val function in libdwarf/dwarf_util.c in Libdwarf before 20161124 allows remote attackers to caus...
CVE-2016-9360MEDIUM6.7An issue was discovered in General Electric (GE) Proficy HMI/SCADA iFIX Version 5.8 SIM 13 and prior versions, Proficy H...
CVE-2016-9339MEDIUM5.3An issue was discovered in INTERSCHALT Maritime Systems VDR G4e Versions 5.220 and prior. External input is used to cons...
CVE-2016-8367MEDIUM5.3An issue was discovered in Schneider Electric Magelis HMI Magelis GTO Advanced Optimum Panels, all versions, Magelis GTU...
CVE-2016-8359MEDIUM6.1An issue was discovered in Moxa ioLogik E1210, firmware Version V2.4 and prior, ioLogik E1211, firmware Version V2.3 and...
CVE-2016-8350MEDIUM6.3An issue was discovered in Moxa ioLogik E1210, firmware Version V2.4 and prior, ioLogik E1211, firmware Version V2.3 and...
CVE-2016-5811MEDIUM6.1An issue was discovered in Visonic PowerLink2, all versions prior to October 2016 firmware release. User controlled inpu...
CVE-2016-6210MEDIUM5.9sshd in OpenSSH before 7.3, when SHA256 or SHA512 are used for user password hashing, uses BLOWFISH hashing on a static ...
CVE-2016-4988MEDIUM6.1Cross-site scripting (XSS) vulnerability in the Build Failure Analyzer plugin before 1.16.0 in Jenkins allows remote att...
CVE-2016-4987MEDIUM6.5Directory traversal vulnerability in the Image Gallery plugin before 1.4 in Jenkins allows remote attackers to list arbi...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now