2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-6095IBM Tivoli Key Lifecycle Manager 2.5 and 2.6 uses an inadequate account lockout setting that could allow a remote attack...
CVE-2016-5935IBM Jazz for Service Management could allow a remote attacker to obtain sensitive information, caused by the failure to ...
CVE-2016-6238The write_ujpg function in lepton/jpgcoder.cc in Dropbox lepton 1.0 allows remote attackers to cause denial of service (...
CVE-2016-6237The build_huffcodes function in lepton/jpgcoder.cc in Dropbox lepton 1.0 allows remote attackers to cause denial of serv...
CVE-2016-6236The setup_imginfo_jpg function in lepton/jpgcoder.cc in Dropbox lepton 1.0 allows remote attackers to cause a denial of ...
CVE-2016-6235The setup_imginfo_jpg function in lepton/jpgcoder.cc in Dropbox lepton 1.0 allows remote attackers to cause a denial of ...
CVE-2016-6234The process_file function in lepton/jpgcoder.cc in Dropbox lepton 1.0 allows remote attackers to cause a denial of servi...
CVE-2016-1566Cross-site scripting (XSS) vulnerability in the file browser in Guacamole 0.9.8 and 0.9.9, when file transfer is enabled...
CVE-2016-9739IBM Security Identity Manager Virtual Appliance stores user credentials in plain in clear text which can be read by a lo...
CVE-2016-9704IBM Security Identity Manager Virtual Appliance is vulnerable to cross-site scripting. This vulnerability allows users t...
CVE-2016-9703IBM Security Identity Manager Virtual Appliance does not invalidate session tokens which could allow an unauthorized use...
CVE-2016-9008IBM UrbanCode Deploy could allow a malicious user to access the Agent Relay ActiveMQ Broker JMX interface and run plugin...
CVE-2016-9000IBM InfoSphere DataStage is vulnerable to cross-frame scripting, caused by insufficient HTML iframe protection. A remote...
CVE-2016-8999IBM InfoSphere Information Server contains a Path-relative stylesheet import vulnerability that allows attackers to rend...
CVE-2016-8982IBM InfoSphere Information Server stores sensitive information in URL parameters. This may lead to information disclosur...
CVE-2016-8977IBM BigFix Inventory v9 could disclose sensitive information to an unauthorized user using HTTP GET requests. This infor...
CVE-2016-8963IBM BigFix Inventory v9 stores potentially sensitive information in log files that could be read by a local user.
CVE-2016-8938IBM UrbanCode Deploy could allow a user to execute code using a specially crafted file upload that would replace code on...
CVE-2016-8933IBM Kenexa LMS on Cloud could allow a remote attacker to traverse directories on the system. An attacker could send a sp...
CVE-2016-8932IBM Kenexa LMS on Cloud could allow a remote attacker to upload arbitrary files, which could allow the attacker to execu...
CVE-2016-8931IBM Kenexa LMS on Cloud could allow a remote attacker to upload arbitrary files, which could allow the attacker to execu...
CVE-2016-8930IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, w...
CVE-2016-8929IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, w...
CVE-2016-8928IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, w...
CVE-2016-8919IBM WebSphere Application Server may be vulnerable to a denial of service, caused by allowing serialized objects from un...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now