2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-4927 | — | — | 1.2% | Mar 20, 2017 | Insufficient validation of SSH keys in Junos Space before 15.2R2 allows man-in-the-middle (MITM) type of attacks while a... |
| CVE-2016-4926 | — | — | 2.5% | Mar 20, 2017 | Insufficient authentication vulnerability in Junos Space before 15.2R2 allows remote network based users with access to ... |
| CVE-2016-6816 | — | — | 39.6% | Mar 20, 2017 | The code in Apache Tomcat 9.0.0.M1 to 9.0.0.M11, 8.5.0 to 8.5.6, 8.0.0.RC1 to 8.0.38, 7.0.0 to 7.0.72, and 6.0.0 to 6.0.... |
| CVE-2016-9697 | — | — | 0.7% | Mar 20, 2017 | An unspecified vulnerability in IBM Rhapsody DM 4.0, 5.0, and 6.0 could allow an attacker to perform a JSON Hijacking At... |
| CVE-2016-9696 | — | — | 0.6% | Mar 20, 2017 | IBM Rhapsody DM 4.0, 5.0, and 6.0 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, w... |
| CVE-2016-9694 | — | — | 0.5% | Mar 20, 2017 | IBM Rhapsody DM 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitr... |
| CVE-2016-9165 | — | — | 4.3% | Mar 20, 2017 | The get_sessions servlet in CA Unified Infrastructure Management (formerly CA Nimsoft Monitor) before 8.5 and CA Unified... |
| CVE-2016-8973 | — | — | 0.7% | Mar 20, 2017 | IBM Rhapsody DM 4.0, 5.0 and 6.0 contains an undisclosed vulnerability that may allow an authenticated user to upload in... |
| CVE-2016-5857 | — | — | 0.3% | Mar 20, 2017 | The Qualcomm SPCom driver in Android before 7.0 allows local users to execute arbitrary code within the context of the k... |
| CVE-2016-2981 | — | — | 0.3% | Mar 20, 2017 | An undisclosed vulnerability in the CLM applications in IBM Jazz Team Server may allow unauthorized access to user crede... |
| CVE-2016-2406 | — | — | 0.6% | Mar 20, 2017 | The permission control module in Huawei Document Security Management (aka DSM) before V100R002C05SPC670 allows remote au... |
| CVE-2016-10214 | — | — | 0.4% | Mar 20, 2017 | Memory leak in the virgl_resource_attach_backing function in virglrenderer before 0.6.0 allows local guest OS users to c... |
| CVE-2016-8855 | — | — | 2.2% | Mar 19, 2017 | Cross-Site Scripting (XSS) in "/sitecore/client/Applications/List Manager/Taskpages/Contact list" in Sitecore Experience... |
| CVE-2016-10253 | — | — | 1.5% | Mar 18, 2017 | An issue was discovered in Erlang/OTP 18.x. Erlang's generation of compiled regular expressions is vulnerable to a heap ... |
| CVE-2016-10187 | — | — | 2.8% | Mar 16, 2017 | The E-book viewer in calibre before 2.75 allows remote attackers to read arbitrary files via a crafted epub file with Ja... |
| CVE-2016-0770 | — | — | 1.8% | Mar 16, 2017 | Cross-site scripting (XSS) vulnerability in includes/admin/pages/manage.php in the Connections Business Directory plugin... |
| CVE-2016-5239 | — | — | 3.2% | Mar 15, 2017 | The gnuplot delegate functionality in ImageMagick before 6.9.4-0 and GraphicsMagick allows remote attackers to execute a... |
| CVE-2016-7955 | — | — | 6.4% | Mar 15, 2017 | The logcheck function in session.inc in AlienVault OSSIM before 5.3.1, when an action has been created, and USM before 5... |
| CVE-2016-10168 | — | — | 3.7% | Mar 15, 2017 | Integer overflow in gd_io.c in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have unspecif... |
| CVE-2016-10167 | — | — | 3.7% | Mar 15, 2017 | The gdImageCreateFromGd2Ctx function in gd_gd2.c in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attac... |
| CVE-2016-10166 | — | — | 10.7% | Mar 15, 2017 | Integer underflow in the _gdContributionsAlloc function in gd_interpolation.c in the GD Graphics Library (aka libgd) bef... |
| CVE-2016-10163 | — | — | 0.4% | Mar 15, 2017 | Memory leak in the vrend_renderer_context_create_internal function in vrend_decode.c in virglrenderer before 0.6.0 allow... |
| CVE-2016-8002 | — | — | — | Mar 15, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was... |
| CVE-2016-6906 | — | — | 2.0% | Mar 15, 2017 | The read_image_tga function in gd_tga.c in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to c... |
| CVE-2016-10251 | — | — | 2.4% | Mar 15, 2017 | Integer overflow in the jpc_pi_nextcprl function in jpc_t2cod.c in JasPer before 1.900.20 allows remote attackers to hav... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now