2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-10255 | — | — | 1.7% | Mar 23, 2017 | The __libelf_set_rawdata_wrlock function in elf_getdata.c in elfutils before 0.168 allows remote attackers to cause a de... |
| CVE-2016-10254 | — | — | 1.6% | Mar 23, 2017 | The allocate_elf function in common.h in elfutils before 0.168 allows remote attackers to cause a denial of service (cra... |
| CVE-2016-7468 | — | — | 1.8% | Mar 23, 2017 | An unauthenticated remote attacker may be able to disrupt services on F5 BIG-IP 11.4.1 - 11.5.4 devices with maliciously... |
| CVE-2016-9169 | — | — | 0.9% | Mar 23, 2017 | A reflected XSS vulnerability exists in the web console of the Document Viewer Agent in Novell GroupWise before 2014 R2 ... |
| CVE-2016-9168 | — | — | 1.5% | Mar 23, 2017 | A missing X-Frame-Options header in the NDS Utility Monitor in NDSD in Novell eDirectory before 9.0.2 could be used by r... |
| CVE-2016-9167 | — | — | 1.2% | Mar 23, 2017 | NDSD in Novell eDirectory before 9.0.2 did not calculate ACLs on LDAP objects across partition boundaries correctly, whi... |
| CVE-2016-5758 | — | — | 0.5% | Mar 23, 2017 | A cross site request forgery protection mechanism in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.... |
| CVE-2016-5757 | — | — | 1.5% | Mar 23, 2017 | iManager Admin Console in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 was vulnerable to iFrame ... |
| CVE-2016-5756 | — | — | 0.6% | Mar 23, 2017 | Multiple components of the web tools in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 were vulner... |
| CVE-2016-5755 | — | — | 0.5% | Mar 23, 2017 | NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 was vulnerable to clickjacking attacks due to a mis... |
| CVE-2016-5754 | — | — | 1.1% | Mar 23, 2017 | Presence of a .htaccess file could leak information in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before SP... |
| CVE-2016-5752 | — | — | 1.1% | Mar 23, 2017 | The SAML2 implementation in Identity Server in NetIQ Access Manager 4.1 before 4.1.2 HF1 and 4.2 before 4.2.2 was handli... |
| CVE-2016-5751 | — | — | 0.7% | Mar 23, 2017 | An unfiltered finalizer target URL in the SAML processing feature in Identity Server in NetIQ Access Manager 4.1 before ... |
| CVE-2016-5750 | — | — | 1.1% | Mar 23, 2017 | The certificate upload feature in iManager in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 could... |
| CVE-2016-5749 | — | — | 0.4% | Mar 23, 2017 | NetIQ Access Manager 4.1 before 4.1.2 HF 1 and 4.2 before 4.2.2 was parsing incoming SAML requests with external entity ... |
| CVE-2016-5748 | — | — | 0.3% | Mar 23, 2017 | External Entity Processing (XXE) vulnerability in the "risk score" application of NetIQ Access Manager 4.1 before 4.1.2 ... |
| CVE-2016-5747 | — | — | 1.9% | Mar 23, 2017 | A security vulnerability in cookie handling in the http stack implementation in NDSD in Novell eDirectory before 9.0.1 a... |
| CVE-2016-1603 | — | — | 0.8% | Mar 23, 2017 | An information leak in the NetIQ IDM ServiceNow Driver before 1.0.0.1 could expose cryptographic attributes to logged-in... |
| CVE-2016-1602 | — | — | 0.5% | Mar 23, 2017 | A code injection in the supportconfig data collection tool in supportutils in SUSE Linux Enterprise Server 12 and 12-SP1... |
| CVE-2016-1597 | — | — | 1.2% | Mar 23, 2017 | A logged-in user in NetIQ Access Governance Suite 6.0 through 6.4 could escalate privileges to administrator. |
| CVE-2016-4504 | — | — | 0.5% | Mar 21, 2017 | A Cross-Site Request Forgery issue was discovered in Meteocontrol WEB'log Basic 100 all versions, Light all versions, Pr... |
| CVE-2016-4931 | — | — | 0.9% | Mar 20, 2017 | XML entity injection in Junos Space before 15.2R2 allows attackers to cause a denial of service. |
| CVE-2016-4930 | — | — | 0.9% | Mar 20, 2017 | Cross-site scripting (XSS) vulnerability in Junos Space before 15.2R2 allows remote attackers to steal sensitive informa... |
| CVE-2016-4929 | — | — | 3.8% | Mar 20, 2017 | Command injection vulnerability in Junos Space before 15.2R2 allows attackers to execute arbitrary code as a root user. |
| CVE-2016-4928 | — | — | 0.7% | Mar 20, 2017 | Cross site request forgery vulnerability in Junos Space before 15.2R2 allows remote attackers to perform certain adminis... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now