2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-8943 | — | — | 0.5% | Feb 1, 2017 | IBM Tivoli Storage Productivity Center is vulnerable to cross-site scripting. This vulnerability allows users to embed a... |
| CVE-2016-8942 | — | — | 0.5% | Feb 1, 2017 | IBM Tivoli Storage Productivity Center could allow an authenticated user with intimate knowledge of the system to edit a... |
| CVE-2016-8941 | — | — | 0.6% | Feb 1, 2017 | IBM Tivoli Storage Productivity Center is vulnerable to cross-site request forgery which could allow an attacker to exec... |
| CVE-2016-8936 | — | — | 0.7% | Feb 1, 2017 | IBM Social Rendering Templates for Digital Data Connector is vulnerable to cross-site scripting. This vulnerability allo... |
| CVE-2016-8934 | — | — | 0.7% | Feb 1, 2017 | IBM WebSphere Application Server is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitra... |
| CVE-2016-8922 | — | — | 0.7% | Feb 1, 2017 | Exphox WebRadar is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript cod... |
| CVE-2016-8921 | — | — | 2.2% | Feb 1, 2017 | IBM FileNet WorkPlace XT could allow a remote attacker to upload arbitrary files, which could allow the attacker to exec... |
| CVE-2016-8920 | — | — | 0.5% | Feb 1, 2017 | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 is vulnerable to cross-site scripting. This vulnerability allows users to... |
| CVE-2016-8918 | — | — | 1.1% | Feb 1, 2017 | IBM Integration Bus, under non default configurations, could allow a remote user to authenticate without providing valid... |
| CVE-2016-8913 | — | — | 1.8% | Feb 1, 2017 | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to traverse directories on the system. An a... |
| CVE-2016-8912 | — | — | 0.9% | Feb 1, 2017 | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 stores potentially sensitive information in in log files that could be re... |
| CVE-2016-8911 | — | — | 0.6% | Feb 1, 2017 | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to hijack the clicking action of the victim... |
| CVE-2016-6126 | — | — | 1.8% | Feb 1, 2017 | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to traverse directories on the system. An a... |
| CVE-2016-6125 | — | — | 0.5% | Feb 1, 2017 | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 is vulnerable to cross-site scripting. This vulnerability allows users to... |
| CVE-2016-6124 | — | — | 2.2% | Feb 1, 2017 | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to upload arbitrary files, which could allo... |
| CVE-2016-6123 | — | — | 0.5% | Feb 1, 2017 | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 is vulnerable to cross-site scripting. This vulnerability allows users to... |
| CVE-2016-6122 | — | — | 0.8% | Feb 1, 2017 | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 discloses answers to security questions in a response to authenticated us... |
| CVE-2016-6113 | — | — | 1.0% | Feb 1, 2017 | IBM Verse is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in t... |
| CVE-2016-6085 | — | — | 0.5% | Feb 1, 2017 | IBM BigFix Platform could allow an attacker on the local network to crash the BES and relay servers. |
| CVE-2016-6084 | — | — | 0.5% | Feb 1, 2017 | IBM BigFix Platform could allow an attacker on the local network to crash the BES server using a specially crafted XMLSc... |
| CVE-2016-6082 | — | — | 4.7% | Feb 1, 2017 | IBM BigFix Platform could allow a remote attacker to execute arbitrary code on the system, caused by a use-after-free ra... |
| CVE-2016-6080 | — | — | 1.0% | Feb 1, 2017 | The WebAdmin context for WebSphere Message Broker allows directory listings which could disclose sensitive information t... |
| CVE-2016-6072 | — | — | 0.5% | Feb 1, 2017 | IBM Maximo Asset Management is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Ja... |
| CVE-2016-6065 | — | — | 0.4% | Feb 1, 2017 | IBM Security Guardium Database Activity Monitor appliance could allow a local user to inject commands that would be exec... |
| CVE-2016-6061 | — | — | 0.5% | Feb 1, 2017 | IBM Jazz Foundation is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now