2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-10746 | — | — | 2.1% | Apr 18, 2019 | libvirt-domain.c in libvirt before 1.3.1 supports virDomainGetTime API calls by guest agents with an RO connection, even... |
| CVE-2016-10745 | — | — | 3.5% | Apr 8, 2019 | In Pallets Jinja before 2.8.1, str.format allows a sandbox escape. |
| CVE-2016-10744 | — | — | 2.2% | Mar 27, 2019 | In Select2 through 4.0.5, as used in Snipe-IT and other products, rich selectlists allow XSS. This affects use cases wit... |
| CVE-2016-10743 | — | — | 2.4% | Mar 23, 2019 | hostapd before 2.6 does not prevent use of the low-quality PRNG that is reached by an os_random() function call. |
| CVE-2016-9166 | — | — | 0.9% | Mar 21, 2019 | NetIQ eDirectory versions prior to 9.0.2, under some circumstances, could be susceptible to downgrade of communication s... |
| CVE-2016-5819 | — | — | 0.9% | Mar 21, 2019 | Moxa G3100V2 Series, editions prior to Version 2.8, and OnCell G3111/G3151/G3211/G3251 Series, editions prior to Version... |
| CVE-2016-5800 | — | — | 2.0% | Mar 21, 2019 | A malicious attacker can trigger a remote buffer overflow in the Communication Server in Fatek Automation PM Designer V3... |
| CVE-2016-8767 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2016-10361 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2016-10360 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2016-10359 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2016-10358 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2016-10357 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2016-10356 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2016-10355 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2016-10354 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2016-10353 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2016-10352 | — | — | — | Mar 5, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2016-10742 | — | — | 2.9% | Feb 17, 2019 | Zabbix before 2.2.21rc1, 3.x before 3.0.13rc1, 3.1.x and 3.2.x before 3.2.10rc1, and 3.3.x and 3.4.x before 3.4.4rc1 all... |
| CVE-2016-1000282 | — | — | 13.4% | Feb 5, 2019 | Haraka version 2.8.8 and earlier comes with a plugin for processing attachments for zip files. Versions 2.8.8 and earlie... |
| CVE-2016-1000276 | — | — | — | Feb 4, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-1000010. Reason: This candidate is a duplicate... |
| CVE-2016-1000271 | — | — | 2.0% | Feb 4, 2019 | Joomla extension DT Register version before 3.1.12 (Joomla 3.x) / 2.8.18 (Joomla 2.5) contains an SQL injection in "/ind... |
| CVE-2016-10741 | — | — | 0.3% | Feb 1, 2019 | In the Linux kernel before 4.9.3, fs/xfs/xfs_aops.c allows local users to cause a denial of service (system crash) becau... |
| CVE-2016-10740 | — | — | 1.1% | Jan 29, 2019 | Various resources in Atlassian Crowd before version 2.10.1 allow remote attackers with administration rights to learn th... |
| CVE-2016-10739 | — | — | 0.5% | Jan 21, 2019 | In the GNU C Library (aka glibc or libc6) through 2.28, the getaddrinfo function would successfully parse a string that ... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now