2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-2866 | — | — | 0.9% | Feb 8, 2017 | An unspecified vulnerability in IBM Jazz Team Server may disclose some deployment information to an authenticated user. |
| CVE-2016-8492 | — | — | 1.4% | Feb 8, 2017 | The implementation of an ANSI X9.31 RNG in Fortinet FortiGate allows attackers to gain unauthorized read access to data ... |
| CVE-2016-10213 | — | — | 2.1% | Feb 8, 2017 | A10 AX1030 and possibly other devices with software before 2.7.2-P8 uses random GCM nonce generations, which makes it ea... |
| CVE-2016-10212 | — | — | 3.1% | Feb 8, 2017 | Radware devices use the same value for the first two GCM nonces, which allows remote attackers to obtain the authenticat... |
| CVE-2016-0270 | — | — | 3.1% | Feb 8, 2017 | IBM Domino 9.0.1 Fix Pack 3 Interim Fix 2 through 9.0.1 Fix Pack 5 Interim Fix 1, when using TLS and AES GCM, uses rando... |
| CVE-2016-8481 | — | — | 0.8% | Feb 8, 2017 | An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execu... |
| CVE-2016-8480 | — | — | 0.8% | Feb 8, 2017 | An elevation of privilege vulnerability in the Qualcomm Secure Execution Environment Communicator driver could enable a ... |
| CVE-2016-8476 | — | — | 0.8% | Feb 8, 2017 | An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execu... |
| CVE-2016-8421 | — | — | 0.8% | Feb 8, 2017 | An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execu... |
| CVE-2016-8420 | — | — | 0.8% | Feb 8, 2017 | An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execu... |
| CVE-2016-8419 | — | — | 0.8% | Feb 8, 2017 | An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execu... |
| CVE-2016-8418 | — | — | 2.7% | Feb 8, 2017 | A remote code execution vulnerability in the Qualcomm crypto driver could enable a remote attacker to execute arbitrary ... |
| CVE-2016-8414 | — | — | 0.7% | Feb 8, 2017 | An information disclosure vulnerability in the Qualcomm Secure Execution Environment Communicator could enable a local m... |
| CVE-2016-9639 | — | — | 2.6% | Feb 7, 2017 | Salt before 2015.8.11 allows deleted minions to read or write to minions with the same id, related to caching. |
| CVE-2016-6667 | — | — | 2.9% | Feb 7, 2017 | NetApp OnCommand Unified Manager for Clustered Data ONTAP 6.3 through 6.4P1 contain a default privileged account, which ... |
| CVE-2016-6495 | — | — | 1.5% | Feb 7, 2017 | NetApp Data ONTAP before 8.2.4P5, when operating in 7-Mode, allows remote attackers to obtain information about the volu... |
| CVE-2016-5711 | — | — | 1.2% | Feb 7, 2017 | NetApp Virtual Storage Console for VMware vSphere before 6.2.1 uses a non-unique certificate, which allows remote attack... |
| CVE-2016-5372 | — | — | 0.5% | Feb 7, 2017 | Cross-site request forgery (CSRF) vulnerability in NetApp Snap Creator Framework before 4.3.0P1 allows remote attackers ... |
| CVE-2016-4341 | — | — | 1.9% | Feb 7, 2017 | NetApp Clustered Data ONTAP before 8.3.2P7 allows remote attackers to obtain SMB share information via unspecified vecto... |
| CVE-2016-3180 | — | — | 1.9% | Feb 7, 2017 | Tor Browser Launcher (aka torbrowser-launcher) before 0.2.4, during the initial run, allows man-in-the-middle attackers ... |
| CVE-2016-3124 | — | — | 1.3% | Feb 7, 2017 | The sanitycheck module in SimpleSAMLphp before 1.14.1 allows remote attackers to learn the PHP version on the system via... |
| CVE-2016-3063 | — | — | 1.2% | Feb 7, 2017 | Multiple functions in NetApp OnCommand System Manager before 8.3.2 do not properly escape special characters, which allo... |
| CVE-2016-2403 | — | — | 2.9% | Feb 7, 2017 | Symfony before 2.8.6 and 3.x before 3.0.6 allows remote attackers to bypass authentication by logging in with an empty p... |
| CVE-2016-1894 | — | — | 2.8% | Feb 7, 2017 | NetApp OnCommand Workflow Automation before 3.1P2 allows remote attackers to bypass authentication via unspecified vecto... |
| CVE-2016-1502 | — | — | 1.6% | Feb 7, 2017 | NetApp SnapCenter Server 1.0 and 1.0P1 allows remote attackers to partially bypass authentication and then list and dele... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now