2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-3402 | — | — | 2.3% | Jan 18, 2017 | Unspecified vulnerability in Zimbra Collaboration before 8.7.0 allows remote attackers to affect confidentiality via unk... |
| CVE-2016-3401 | — | — | 1.7% | Jan 18, 2017 | Unspecified vulnerability in Zimbra Collaboration before 8.7.0 allows remote authenticated users to affect integrity via... |
| CVE-2016-10086 | — | — | 1.6% | Jan 18, 2017 | RESTful web services in CA Service Desk Manager 12.9 and CA Service Desk Management 14.1 might allow remote authenticate... |
| CVE-2016-6897 | — | — | 28.3% | Jan 18, 2017 | Cross-site request forgery (CSRF) vulnerability in the wp_ajax_update_plugin function in wp-admin/includes/ajax-actions.... |
| CVE-2016-6896 | — | — | 38.4% | Jan 18, 2017 | Directory traversal vulnerability in the wp_ajax_update_plugin function in wp-admin/includes/ajax-actions.php in WordPre... |
| CVE-2016-10148 | — | — | 1.6% | Jan 18, 2017 | The wp_ajax_update_plugin function in wp-admin/includes/ajax-actions.php in WordPress before 4.6 makes a get_plugin_data... |
| CVE-2016-10147 | — | — | 0.4% | Jan 18, 2017 | crypto/mcryptd.c in the Linux kernel before 4.8.15 allows local users to cause a denial of service (NULL pointer derefer... |
| CVE-2016-9844 | — | — | 1.8% | Jan 18, 2017 | Buffer overflow in the zi_short function in zipinfo.c in Info-Zip UnZip 6.0 allows remote attackers to cause a denial of... |
| CVE-2016-9584 | — | — | 2.1% | Jan 18, 2017 | libical allows remote attackers to cause a denial of service (use-after-free) and possibly read heap memory via a crafte... |
| CVE-2016-9297 | — | — | 6.5% | Jan 18, 2017 | The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds rea... |
| CVE-2016-9279 | — | — | 2.0% | Jan 18, 2017 | Use-after-free vulnerability in the Samsung Exynos fimg2d driver for Android with Exynos 5433, 54xx, or 7420 chipsets al... |
| CVE-2016-9278 | — | — | 0.4% | Jan 18, 2017 | The Samsung Exynos fimg2d driver for Android with Exynos 5433, 54xx, or 7420 chipsets allows local users to cause a deni... |
| CVE-2016-9273 | — | — | 3.8% | Jan 18, 2017 | tiffsplit in libtiff 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file,... |
| CVE-2016-9109 | — | — | 2.2% | Jan 18, 2017 | Artifex Software MuJS allows attackers to cause a denial of service (crash) via vectors related to incomplete escape seq... |
| CVE-2016-7999 | — | — | 2.3% | Jan 18, 2017 | ecrire/exec/valider_xml.php in SPIP 3.1.2 and earlier allows remote attackers to conduct server side request forgery (SS... |
| CVE-2016-7998 | — | — | 13.6% | Jan 18, 2017 | The SPIP template composer/compiler in SPIP 3.1.2 and earlier allows remote authenticated users to execute arbitrary PHP... |
| CVE-2016-7997 | — | — | 3.4% | Jan 18, 2017 | The WPG format reader in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause a denial of service (asserti... |
| CVE-2016-7996 | — | — | 3.9% | Jan 18, 2017 | Heap-based buffer overflow in the WPG format reader in GraphicsMagick 1.3.25 and earlier allows remote attackers to have... |
| CVE-2016-7982 | — | — | 20.5% | Jan 18, 2017 | Directory traversal vulnerability in ecrire/exec/valider_xml.php in SPIP 3.1.2 and earlier allows remote attackers to en... |
| CVE-2016-7981 | — | — | 8.2% | Jan 18, 2017 | Cross-site scripting (XSS) vulnerability in valider_xml.php in SPIP 3.1.2 and earlier allows remote attackers to inject ... |
| CVE-2016-7980 | — | — | 4.1% | Jan 18, 2017 | Cross-site request forgery (CSRF) vulnerability in ecrire/exec/valider_xml.php in SPIP 3.1.2 and earlier allows remote a... |
| CVE-2016-7564 | — | — | 1.7% | Jan 18, 2017 | Heap-based buffer overflow in the Fp_toString function in jsfunction.c in Artifex Software MuJS allows attackers to caus... |
| CVE-2016-7563 | — | — | 1.5% | Jan 18, 2017 | The chartorune function in Artifex Software MuJS allows attackers to cause a denial of service (out-of-bounds read) via ... |
| CVE-2016-7150 | — | — | 0.9% | Jan 18, 2017 | Cross-site scripting (XSS) vulnerability in b2evolution 6.7.5 and earlier allows remote authenticated users to inject ar... |
| CVE-2016-7149 | — | — | 1.2% | Jan 18, 2017 | Cross-site scripting (XSS) vulnerability in b2evolution 6.7.5 and earlier allows remote attackers to inject arbitrary we... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now