2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-7144 | — | — | 1.3% | Jan 18, 2017 | The m_authenticate function in modules/m_sasl.c in UnrealIRCd before 3.2.10.7 and 4.x before 4.0.6 allows remote attacke... |
| CVE-2016-6527 | — | — | 1.5% | Jan 18, 2017 | The SmartCall Activity component in Telecom application on Samsung Note device L(5.0/5.1) and M(6.0) allows attackers to... |
| CVE-2016-6526 | — | — | 1.5% | Jan 18, 2017 | The SpamCall Activity component in Telecom application on Samsung Note device L(5.0/5.1) and M(6.0) allows attackers to ... |
| CVE-2016-2233 | — | — | 34.7% | Jan 18, 2017 | Stack-based buffer overflow in the inbound_cap_ls function in common/inbound.c in HexChat 2.10.2 allows remote IRC serve... |
| CVE-2016-2087 | — | — | 9.4% | Jan 18, 2017 | Directory traversal vulnerability in the client in HexChat 2.11.0 allows remote IRC servers to read or modify arbitrary ... |
| CVE-2016-7904 | — | — | 1.0% | Jan 16, 2017 | Cross-site request forgery (CSRF) vulnerability in CMS Made Simple before 2.1.6 allows remote attackers to hijack the au... |
| CVE-2016-8207 | — | — | 15.4% | Jan 14, 2017 | A Directory Traversal vulnerability in CliMonitorReportServlet in the Brocade Network Advisor versions released prior to... |
| CVE-2016-8206 | — | — | 14.5% | Jan 14, 2017 | A Directory Traversal vulnerability in servlet SoftwareImageUpload in the Brocade Network Advisor versions released prio... |
| CVE-2016-8205 | — | — | 13.0% | Jan 14, 2017 | A Directory Traversal vulnerability in DashboardFileReceiveServlet in the Brocade Network Advisor versions released prio... |
| CVE-2016-8201 | — | — | 0.5% | Jan 14, 2017 | A CSRF vulnerability in Brocade Virtual Traffic Manager versions released prior to and including 11.0 could allow an att... |
| CVE-2016-10142 | — | — | 2.7% | Jan 14, 2017 | An issue was discovered in the IPv6 protocol specification, related to ICMP Packet Too Big (PTB) messages. (The scope of... |
| CVE-2016-9813 | — | — | 7.9% | Jan 13, 2017 | The _parse_pat function in the mpegts parser in GStreamer before 1.10.2 allows remote attackers to cause a denial of ser... |
| CVE-2016-9812 | — | — | 3.5% | Jan 13, 2017 | The gst_mpegts_section_new function in the mpegts decoder in GStreamer before 1.10.2 allows remote attackers to cause a ... |
| CVE-2016-9810 | — | — | 2.4% | Jan 13, 2017 | The gst_decode_chain_free_internal function in the flxdex decoder in gst-plugins-good in GStreamer before 1.10.2 allows ... |
| CVE-2016-9809 | — | — | 2.9% | Jan 13, 2017 | Off-by-one error in the gst_h264_parse_set_caps function in GStreamer before 1.10.2 allows remote attackers to have unsp... |
| CVE-2016-9808 | — | — | 5.1% | Jan 13, 2017 | The FLIC decoder in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (out-of-bounds write an... |
| CVE-2016-9807 | — | — | 2.6% | Jan 13, 2017 | The flx_decode_chunks function in gst/flx/gstflxdec.c in GStreamer before 1.10.2 allows remote attackers to cause a deni... |
| CVE-2016-9312 | — | — | 31.7% | Jan 13, 2017 | ntpd in NTP before 4.2.8p9, when running on Windows, allows remote attackers to cause a denial of service via a large UD... |
| CVE-2016-9311 | — | — | 11.2% | Jan 13, 2017 | ntpd in NTP before 4.2.8p9, when the trap service is enabled, allows remote attackers to cause a denial of service (NULL... |
| CVE-2016-9310 | — | — | 11.2% | Jan 13, 2017 | The control mode (mode 6) functionality in ntpd in NTP before 4.2.8p9 allows remote attackers to set or unset traps via ... |
| CVE-2016-9107 | — | — | 3.0% | Jan 13, 2017 | The OTR plugin for Gajim sends information in cleartext when using XHTML, which allows remote attackers to obtain sensit... |
| CVE-2016-8883 | — | — | 1.4% | Jan 13, 2017 | The jpc_dec_tiledecode function in jpc_dec.c in JasPer before 1.900.8 allows remote attackers to cause a denial of servi... |
| CVE-2016-8882 | — | — | 1.5% | Jan 13, 2017 | The jpc_dec_tilefini function in libjasper/jpc/jpc_dec.c in JasPer before 1.900.8 allows remote attackers to cause a den... |
| CVE-2016-8881 | — | — | — | Jan 13, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-4517. Reason: This candidate is a duplicate of C... |
| CVE-2016-8880 | — | — | — | Jan 13, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-4516. Reason: This candidate is a duplicate of C... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now