2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-8348An XML External Entity (XXE) issue was discovered in Emerson Liebert SiteScan Web Version 6.5, and prior. An attacker ma...
CVE-2016-8347An issue was discovered in Kabona AB WebDatorCentral (WDC) application prior to Version 3.4.0. WDC does not limit authen...
CVE-2016-8346An issue was discovered in Moxa EDR-810 Industrial Secure Router. By accessing a specific uniform resource locator (URL)...
CVE-2016-8344An issue was discovered in Honeywell Experion Process Knowledge System (PKS) platform: Experion PKS, Release 3xx and pri...
CVE-2016-8341An issue was discovered in Ecava IntegraXor Version 5.0.413.0. The Ecava IntegraXor web server has parameters that are v...
CVE-2016-7987An issue was discovered in Siemens ETA4 firmware (all versions prior to Revision 08) of the SM-2558 extension module for...
CVE-2016-5818An issue was discovered in Schneider Electric PowerLogic PM8ECC device 2.651 and older. Undocumented hard-coded credenti...
CVE-2016-5815An issue was discovered on Schneider Electric IONXXXX series power meters ION73XX series, ION75XX series, ION76XX series...
CVE-2016-5813An issue was discovered in Visonic PowerLink2, all versions prior to October 2016 firmware release. When a specific URL ...
CVE-2016-5811MEDIUM6.1An issue was discovered in Visonic PowerLink2, all versions prior to October 2016 firmware release. User controlled inpu...
CVE-2016-5809An issue was discovered on Schneider Electric IONXXXX series power meters ION73XX series, ION75XX series, ION76XX series...
CVE-2016-5805An issue was discovered in Delta Electronics WPLSoft, Versions prior to V2.42.11, ISPSoft, Versions prior to 3.02.11, an...
CVE-2016-5803An issue was discovered in CA Unified Infrastructure Management Version 8.47 and earlier. The Unified Infrastructure Man...
CVE-2016-5802An issue was discovered in Delta Electronics WPLSoft, Versions prior to V2.42.11, ISPSoft, Versions prior to 3.02.11, an...
CVE-2016-5801An issue was discovered in OmniMetrix OmniView, Version 1.2. Insufficient password requirements for the OmniView web app...
CVE-2016-5798An issue was discovered in Fatek Automation PM Designer V3 Version 2.1.2.2, and Automation FV Designer Version 1.2.8.0. ...
CVE-2016-5796An issue was discovered in Fatek Automation PM Designer V3 Version 2.1.2.2, and Automation FV Designer Version 1.2.8.0. ...
CVE-2016-5786An issue was discovered in OmniMetrix OmniView, Version 1.2. The OmniView web application transmits credentials with the...
CVE-2016-5782An issue was discovered in Locus Energy LGate prior to 1.05H, LGate 50, LGate 100, LGate 101, LGate 120, and LGate 320. ...
CVE-2016-2274An issue was discovered in Adcon Telemetry A850 Telemetry Gateway Base Station. The Web Interface does not neutralize or...
CVE-2016-10224HIGH7.2An issue was discovered in Sauter NovaWeb web HMI. The application uses a protection mechanism that relies on the existe...
CVE-2016-8859Multiple integer overflows in the TRE library and musl libc allow attackers to cause memory corruption via a large numbe...
CVE-2016-8659Bubblewrap before 0.1.3 sets the PR_SET_DUMPABLE flag, which might allow local users to gain privileges by attaching to ...
CVE-2016-7565install/index.php in Exponent CMS 2.3.9 allows remote attackers to execute arbitrary commands via shell metacharacters i...
CVE-2016-6129HIGH7.5The rsa_verify_hash_ex function in rsa_verify_hash.c in LibTomCrypt, as used in OP-TEE before 2.2.0, does not validate t...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now