2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-10098 | — | — | 2.5% | Feb 5, 2017 | An issue was discovered on SendQuick Entera and Avera devices before 2HF16. Multiple Command Injection vulnerabilities a... |
| CVE-2016-8753 | — | — | — | Feb 4, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2016-0730 | — | — | — | Feb 4, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2016-7147 | — | — | 1.3% | Feb 4, 2017 | Cross-site scripting (XSS) vulnerability in the manage_findResult component in the search feature in Zope ZMI in Plone b... |
| CVE-2016-6500 | — | — | 2.3% | Feb 3, 2017 | Unspecified methods in the RACF Connector component before 1.1.1.0 in ForgeRock OpenIDM and OpenICF improperly call the ... |
| CVE-2016-4797 | — | — | 2.0% | Feb 3, 2017 | Divide-by-zero vulnerability in the opj_tcd_init_tile function in tcd.c in OpenJPEG before 2.1.1 allows remote attackers... |
| CVE-2016-4796 | — | — | 3.6% | Feb 3, 2017 | Heap-based buffer overflow in the color_cmyk_to_rgb in common/color.c in OpenJPEG before 2.1.1 allows remote attackers t... |
| CVE-2016-3183 | — | — | 3.4% | Feb 3, 2017 | The sycc422_t_rgb function in common/color.c in OpenJPEG before 2.1.1 allows remote attackers to cause a denial of servi... |
| CVE-2016-9642 | — | — | 1.3% | Feb 3, 2017 | JavaScriptCore in WebKit allows attackers to cause a denial of service (out-of-bounds heap read) via a crafted Javascrip... |
| CVE-2016-9082 | — | — | 2.0% | Feb 3, 2017 | Integer overflow in the write_png function in cairo 1.14.6 allows remote attackers to cause a denial of service (invalid... |
| CVE-2016-8569 | — | — | 1.8% | Feb 3, 2017 | The git_oid_nfmt function in commit.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (NUL... |
| CVE-2016-8568 | — | — | 1.9% | Feb 3, 2017 | The git_commit_message function in oid.c in libgit2 before 0.24.3 allows remote attackers to cause a denial of service (... |
| CVE-2016-6163 | — | — | 1.4% | Feb 3, 2017 | The rsvg_pattern_fix_fallback function in rsvg-paint_server.c in librsvg2 2.40.2 allows remote attackers to cause a deni... |
| CVE-2016-5241 | — | — | 1.6% | Feb 3, 2017 | magick/render.c in GraphicsMagick before 1.3.24 allows remote attackers to cause a denial of service (arithmetic excepti... |
| CVE-2016-5115 | — | — | 1.1% | Feb 3, 2017 | The avcodec_decode_audio4 function in libavcodec in libavformat 57.34.103, as used in MPlayer, allows remote attackers t... |
| CVE-2016-4352 | — | — | 1.1% | Feb 3, 2017 | Integer overflow in the demuxer function in libmpdemux/demux_gif.c in Mplayer allows remote attackers to cause a denial ... |
| CVE-2016-2318 | — | — | 1.9% | Feb 3, 2017 | GraphicsMagick 1.3.23 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted SVG ... |
| CVE-2016-2317 | — | — | 2.0% | Feb 3, 2017 | Multiple buffer overflows in GraphicsMagick 1.3.23 allow remote attackers to cause a denial of service (crash) via a cra... |
| CVE-2016-9873 | — | — | 1.6% | Feb 3, 2017 | EMC Documentum D2 version 4.5 and EMC Documentum D2 version 4.6 has a DQL Injection Vulnerability that could potentially... |
| CVE-2016-9872 | — | — | 1.3% | Feb 3, 2017 | EMC Documentum D2 version 4.5 and EMC Documentum D2 version 4.6 has Reflected Cross-Site Scripting Vulnerabilities that ... |
| CVE-2016-9871 | — | — | 2.0% | Feb 3, 2017 | EMC Isilon OneFS 7.2.1.0 - 7.2.1.3, EMC Isilon OneFS 7.2.0.x, EMC Isilon OneFS 7.1.1.0 - 7.1.1.10, EMC Isilon OneFS 7.1.... |
| CVE-2016-0890 | — | — | 0.7% | Feb 3, 2017 | EMC PowerPath Virtual (Management) Appliance 2.0, EMC PowerPath Virtual (Management) Appliance 2.0 SP1 is affected by a ... |
| CVE-2016-6116 | — | — | 1.2% | Feb 2, 2017 | IBM Tivoli Key Lifecycle Manager 2.5 and 2.6 could allow a remote attacker to obtain sensitive information, caused by th... |
| CVE-2016-6103 | — | — | 0.6% | Feb 2, 2017 | IBM Tivoli Key Lifecycle Manager 2.5 and 2.6 is vulnerable to cross-site request forgery which could allow an attacker t... |
| CVE-2016-6099 | — | — | 1.0% | Feb 2, 2017 | IBM Tivoli Key Lifecycle Manager 2.5 and 2.6 discloses sensitive information to unauthorized users. The information can ... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now