2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-2866An unspecified vulnerability in IBM Jazz Team Server may disclose some deployment information to an authenticated user.
CVE-2016-8492The implementation of an ANSI X9.31 RNG in Fortinet FortiGate allows attackers to gain unauthorized read access to data ...
CVE-2016-10213A10 AX1030 and possibly other devices with software before 2.7.2-P8 uses random GCM nonce generations, which makes it ea...
CVE-2016-10212Radware devices use the same value for the first two GCM nonces, which allows remote attackers to obtain the authenticat...
CVE-2016-0270IBM Domino 9.0.1 Fix Pack 3 Interim Fix 2 through 9.0.1 Fix Pack 5 Interim Fix 1, when using TLS and AES GCM, uses rando...
CVE-2016-8481An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execu...
CVE-2016-8480An elevation of privilege vulnerability in the Qualcomm Secure Execution Environment Communicator driver could enable a ...
CVE-2016-8476An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execu...
CVE-2016-8421An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execu...
CVE-2016-8420An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execu...
CVE-2016-8419An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execu...
CVE-2016-8418A remote code execution vulnerability in the Qualcomm crypto driver could enable a remote attacker to execute arbitrary ...
CVE-2016-8414An information disclosure vulnerability in the Qualcomm Secure Execution Environment Communicator could enable a local m...
CVE-2016-9639Salt before 2015.8.11 allows deleted minions to read or write to minions with the same id, related to caching.
CVE-2016-6667NetApp OnCommand Unified Manager for Clustered Data ONTAP 6.3 through 6.4P1 contain a default privileged account, which ...
CVE-2016-6495NetApp Data ONTAP before 8.2.4P5, when operating in 7-Mode, allows remote attackers to obtain information about the volu...
CVE-2016-5711NetApp Virtual Storage Console for VMware vSphere before 6.2.1 uses a non-unique certificate, which allows remote attack...
CVE-2016-5372Cross-site request forgery (CSRF) vulnerability in NetApp Snap Creator Framework before 4.3.0P1 allows remote attackers ...
CVE-2016-4341NetApp Clustered Data ONTAP before 8.3.2P7 allows remote attackers to obtain SMB share information via unspecified vecto...
CVE-2016-3180Tor Browser Launcher (aka torbrowser-launcher) before 0.2.4, during the initial run, allows man-in-the-middle attackers ...
CVE-2016-3124The sanitycheck module in SimpleSAMLphp before 1.14.1 allows remote attackers to learn the PHP version on the system via...
CVE-2016-3063Multiple functions in NetApp OnCommand System Manager before 8.3.2 do not properly escape special characters, which allo...
CVE-2016-2403Symfony before 2.8.6 and 3.x before 3.0.6 allows remote attackers to bypass authentication by logging in with an empty p...
CVE-2016-1894NetApp OnCommand Workflow Automation before 3.1P2 allows remote attackers to bypass authentication via unspecified vecto...
CVE-2016-1502NetApp SnapCenter Server 1.0 and 1.0P1 allows remote attackers to partially bypass authentication and then list and dele...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now