2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-10067 | — | — | 3.0% | Mar 2, 2017 | magick/memory.c in ImageMagick before 6.9.4-5 allows remote attackers to cause a denial of service (application crash) v... |
| CVE-2016-10228 | — | — | 4.0% | Mar 2, 2017 | The iconv program in the GNU C Library (aka glibc or libc6) 2.31 and earlier, when invoked with multiple suffixes in the... |
| CVE-2016-8233 | — | — | 1.1% | Mar 1, 2017 | Log files generated by Lenovo XClarity Administrator (LXCA) versions earlier than 1.2.2 may contain user credentials in ... |
| CVE-2016-9994 | — | — | 0.9% | Mar 1, 2017 | IBM Kenexa LCMS Premier on Cloud 9.0, and 10.0.0 is vulnerable to SQL injection. A remote attacker could send specially-... |
| CVE-2016-9993 | — | — | 0.9% | Mar 1, 2017 | IBM Kenexa LCMS Premier on Cloud 9.0, and 10.0.0 is vulnerable to SQL injection. A remote attacker could send specially-... |
| CVE-2016-9992 | — | — | 0.9% | Mar 1, 2017 | IBM Kenexa LCMS Premier on Cloud 9.0, and 10.0.0 is vulnerable to SQL injection. A remote attacker could send specially-... |
| CVE-2016-8232 | — | — | 1.4% | Mar 1, 2017 | Document Object Model-(DOM) based cross-site scripting vulnerability in the Advanced Management Module (AMM) versions ea... |
| CVE-2016-5932 | — | — | 0.5% | Mar 1, 2017 | IBM Connections 4.0, 4.5, 5.0, and 5.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed a... |
| CVE-2016-2880 | — | — | 0.2% | Mar 1, 2017 | IBM QRadar 7.2 stores the encryption key used to encrypt the service account password which can be obtained by a local u... |
| CVE-2016-2879 | — | — | 0.2% | Mar 1, 2017 | IBM QRadar 7.2 uses outdated hashing algorithms to hash certain passwords, which could allow a local user to obtain and ... |
| CVE-2016-9830 | — | — | 1.7% | Mar 1, 2017 | The MagickRealloc function in memory.c in Graphicsmagick 1.3.25 allows remote attackers to cause a denial of service (cr... |
| CVE-2016-6485 | — | — | 0.8% | Mar 1, 2017 | The __construct function in Framework/Encryption/Crypt.php in Magento 2 uses the PHP rand function to generate a random ... |
| CVE-2016-5374 | — | — | 2.1% | Mar 1, 2017 | NetApp Data ONTAP 9.0 and 9.1 before 9.1P1 allows remote authenticated users that own SMB-hosted data to bypass intended... |
| CVE-2016-10151 | — | — | 0.4% | Mar 1, 2017 | The hesiod_init function in lib/hesiod.c in Hesiod 3.2.1 compares EUID with UID to determine whether to use configuratio... |
| CVE-2016-9826 | — | — | 1.0% | Mar 1, 2017 | libavcodec/ituh263dec.c in libav 11.8 allows remote attackers to cause a denial of service (crash) via vectors involving... |
| CVE-2016-9825 | — | — | 0.9% | Mar 1, 2017 | libswscale/utils.c in libav 11.8 allows remote attackers to cause a denial of service (crash) via vectors involving left... |
| CVE-2016-9824 | — | — | 0.9% | Mar 1, 2017 | Integer overflow in libswscale/x86/swscale.c in libav 11.8 allows remote attackers to cause a denial of service (crash) ... |
| CVE-2016-9823 | — | — | 0.9% | Mar 1, 2017 | libavcodec/x86/mpegvideo.c in libav 11.8 allows remote attackers to cause a denial of service (crash) via a crafted file... |
| CVE-2016-9822 | — | — | 1.2% | Mar 1, 2017 | Integer overflow in libavcodec/mpeg12dec.c in libav 11.8 allows remote attackers to cause a denial of service (crash) vi... |
| CVE-2016-9821 | — | — | 1.2% | Mar 1, 2017 | Integer overflow in libavcodec/mpegvideo_parser.c in libav 11.8 allows remote attackers to cause a denial of service (cr... |
| CVE-2016-9820 | — | — | 0.9% | Mar 1, 2017 | libavcodec/mpegvideo_motion.c in libav 11.8 allows remote attackers to cause a denial of service (crash) via vectors inv... |
| CVE-2016-9819 | — | — | 1.0% | Mar 1, 2017 | libavcodec/mpegvideo.c in libav 11.8 allows remote attackers to cause a denial of service (crash) via vectors involving ... |
| CVE-2016-10095 | — | — | 2.7% | Mar 1, 2017 | Stack-based buffer overflow in the _TIFFVGetField function in tif_dir.c in LibTIFF 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6... |
| CVE-2016-10094 | — | — | 1.8% | Mar 1, 2017 | Off-by-one error in the t2p_readwrite_pdf_image_tile function in tools/tiff2pdf.c in LibTIFF 4.0.7 allows remote attacke... |
| CVE-2016-10093 | — | — | 2.0% | Mar 1, 2017 | Integer overflow in tools/tiffcp.c in LibTIFF 4.0.7, 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0a... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now