2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-8417An elevation of privilege vulnerability in the Qualcomm camera driver could enable a local malicious application to exec...
CVE-2016-8416An information disclosure vulnerability in the Qualcomm video driver could enable a local malicious application to acces...
CVE-2016-8413An information disclosure vulnerability in the Qualcomm camera driver could enable a local malicious application to acce...
CVE-2016-9245In F5 BIG-IP systems 12.1.0 - 12.1.2, malicious requests made to virtual servers with an HTTP profile can cause the TMM ...
CVE-2016-10200HIGH7Race condition in the L2TPv3 IP Encapsulation feature in the Linux kernel before 4.8.14 allows local users to gain privi...
CVE-2016-9740IBM QRadar 7.2 could allow a remote attacker to consume all resources on the server due to not properly restricting the ...
CVE-2016-9730IBM QRadar Incident Forensics 7.2 is vulnerable to cross-site request forgery which could allow an attacker to execute m...
CVE-2016-9729IBM QRadar 7.2 does not perform an authentication check for a critical resource or functionality allowing anonymous user...
CVE-2016-9728IBM Qradar 7.2 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which coul...
CVE-2016-9727IBM QRadar 7.2 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a spe...
CVE-2016-9726IBM QRadar Incident Forensics 7.2 could allow a remote authenticated attacker to execute arbitrary commands on the syste...
CVE-2016-9725IBM QRadar Incident Forensics 7.2 allows for Cross-Origin Resource Sharing (CORS), which is a mechanism that allows web ...
CVE-2016-9724IBM QRadar 7.2 is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when process...
CVE-2016-9723IBM QRadar 7.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code...
CVE-2016-9720IBM QRadar 7.2 discloses sensitive information to unauthorized users. The information can be used to mount further attac...
CVE-2016-9693IBM Business Process Manager 7.5, 8.0, and 8.5 has a file download capability that is vulnerable to a set of attacks. Ul...
CVE-2016-8971IBM WebSphere MQ 8.0 could allow an authenticated user with queue manager permissions to cause a segmentation fault whic...
CVE-2016-8940IBM Tivoli Storage Manager (IBM Spectrum Protect) 6.1, 6.2, 6.3, and 7.1 does not perform sufficient authority checking ...
CVE-2016-9643The regex code in Webkit 2.4.11 allows remote attackers to cause a denial of service (memory consumption) as demonstrate...
CVE-2016-9087SQL injection vulnerability in framework/modules/filedownloads/controllers/filedownloadController.php in Exponent CMS 2....
CVE-2016-9020SQL injection vulnerability in framework/modules/help/controllers/helpController.php in Exponent CMS 2.3.9 and earlier a...
CVE-2016-9019SQL injection vulnerability in the activate_address function in framework/modules/addressbook/controllers/addressControl...
CVE-2016-8863Heap-based buffer overflow in the create_url_list function in gena/gena_device.c in Portable UPnP SDK (aka libupnp) befo...
CVE-2016-7789SQL injection vulnerability in framework/core/models/expConfig.php in Exponent CMS 2.3.9 and earlier allows remote attac...
CVE-2016-7788SQL injection vulnerability in framework/modules/users/models/user.php in Exponent CMS 2.3.9 and earlier allows remote a...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now