2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-3104mongod in MongoDB 2.6, when using 2.4-style users, and 2.4 allow remote attackers to cause a denial of service (memory c...
CVE-2016-1713Unrestricted file upload vulnerability in the Settings_Vtiger_CompanyDetailsSave_Action class in modules/Settings/Vtiger...
CVE-2016-0727The crontab script in the ntp package before 1:4.2.6.p3+dfsg-1ubuntu3.11 on Ubuntu 12.04 LTS, before 1:4.2.6.p5+dfsg-3ub...
CVE-2016-8927IBM Tivoli Application Dependency Discovery Manager 7.2.2 and 7.3 is vulnerable to cross-site scripting. This vulnerabil...
CVE-2016-8926IBM Tivoli Application Dependency Discovery Manager 7.2.2 and 7.3 could allow a remote attacker to read system files or ...
CVE-2016-8925IBM Tivoli Application Dependency Discovery Manager 7.2.2 and 7.3 could allow a remote attacker to include arbitrary fil...
CVE-2016-1000259Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-10326. Reason: This candidate is a reservation ...
CVE-2016-1000258Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-10325. Reason: This candidate is a reservation ...
CVE-2016-10328CRITICAL9.8FreeType 2 before 2016-12-16 has an out-of-bounds write caused by a heap-based buffer overflow related to the cff_parser...
CVE-2016-10327LibreOffice before 2016-12-22 has an out-of-bounds write caused by a heap-based buffer overflow related to the EnhWMFRea...
CVE-2016-8727An exploitable information disclosure vulnerability exists in the Web Application functionality of Moxa AWK-3131A Wirele...
CVE-2016-8726HIGH7.5An exploitable null pointer dereference vulnerability exists in the Web Application /forms/web_runScript iw_filename fun...
CVE-2016-8725MEDIUM5.3An exploitable information disclosure vulnerability exists in the Web Application functionality of the Moxa AWK-3131A wi...
CVE-2016-8724MEDIUM5.3An exploitable information disclosure vulnerability exists in the serviceAgent functionality of Moxa AWK-3131A Wireless ...
CVE-2016-8723HIGH7.5An exploitable null pointer dereference exists in the Web Application functionality of Moxa AWK-3131A Wireless Access Po...
CVE-2016-8722MEDIUM5.3An exploitable Information Disclosure vulnerability exists in the Web Application functionality of Moxa AWK-3131A Series...
CVE-2016-8720MEDIUM4.3An exploitable HTTP Header Injection vulnerability exists in the Web Application functionality of the Moxa AWK-3131A Wir...
CVE-2016-8712HIGH8.1An exploitable nonce reuse vulnerability exists in the Web Application functionality of Moxa AWK-3131A Wireless AP runni...
CVE-2016-6818SQL injection vulnerability in SAP Business Intelligence platform before January 2017 allows remote attackers to obtain ...
CVE-2016-7834SONY SNC-CH115, SNC-CH120, SNC-CH160, SNC-CH220, SNC-CH260, SNC-DH120, SNC-DH120T, SNC-DH160, SNC-DH220, SNC-DH220T, SNC...
CVE-2016-4899The datamover module in the Linux version of NovaBACKUP DataCenter before 09.06.03.0353 is vulnerable to remote command ...
CVE-2016-4898The datamover module in the Linux version of NovaBACKUP DataCenter before 09.06.03.0353 is vulnerable to remote command ...
CVE-2016-1155HTTP header injection vulnerability in the URLConnection class in Android OS 2.2 through 6.0 allows remote attackers to ...
CVE-2016-4032Samsung SM-G920F build G920FXXU2COH2 (Galaxy S6), SM-N9005 build N9005XXUGBOK6 (Galaxy Note 3), GT-I9192 build I9192XXUB...
CVE-2016-4031Samsung SM-G920F build G920FXXU2COH2 (Galaxy S6), SM-N9005 build N9005XXUGBOK6 (Galaxy Note 3), GT-I9192 build I9192XXUB...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now