2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-6091 | — | — | — | Jan 10, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2015-1897, CVE-2015-0119. Reason: This candidate is... |
| CVE-2016-9247 | — | — | 1.9% | Jan 10, 2017 | Under certain conditions for BIG-IP systems using a virtual server with an associated FastL4 profile and TCP analytics p... |
| CVE-2016-6837 | — | — | 3.7% | Jan 10, 2017 | Cross-site scripting (XSS) vulnerability in MantisBT Filter API in MantisBT versions before 1.2.19, and versions 2.0.0-b... |
| CVE-2016-6831 | — | — | 1.8% | Jan 10, 2017 | The "process-execute" and "process-spawn" procedures did not free memory correctly when the execve() call failed, result... |
| CVE-2016-6830 | — | — | 2.1% | Jan 10, 2017 | The "process-execute" and "process-spawn" procedures in CHICKEN Scheme used fixed-size buffers for holding the arguments... |
| CVE-2016-6581 | — | — | 1.8% | Jan 10, 2017 | A HTTP/2 implementation built using any version of the Python HPACK library between v1.0.0 and v2.2.0 could be targeted ... |
| CVE-2016-6580 | — | — | 1.8% | Jan 10, 2017 | A HTTP/2 implementation built using any version of the Python priority library prior to version 1.2.0 could be targeted ... |
| CVE-2016-6287 | — | — | 1.5% | Jan 10, 2017 | The "http-client" egg always used a HTTP_PROXY environment variable to determine whether HTTP traffic should be routed v... |
| CVE-2016-6286 | — | — | 1.5% | Jan 10, 2017 | The "spiffy-cgi-handlers" egg would convert a nonexistent "Proxy" header to the HTTP_PROXY environment variable, which w... |
| CVE-2016-10126 | — | — | 4.0% | Jan 10, 2017 | Splunk Web in Splunk Enterprise 5.0.x before 5.0.17, 6.0.x before 6.0.13, 6.1.x before 6.1.12, 6.2.x before 6.2.12, 6.3.... |
| CVE-2016-8106 | — | — | 5.1% | Jan 9, 2017 | A Denial of Service in Intel Ethernet Controller's X710/XL710 with Non-Volatile Memory Images before version 5.05 allows... |
| CVE-2016-10125 | — | — | 1.2% | Jan 9, 2017 | D-Link DGS-1100 devices with Rev.B firmware 1.01.018 have a hardcoded SSL private key, which allows man-in-the-middle at... |
| CVE-2016-10124 | — | — | 1.5% | Jan 9, 2017 | An issue was discovered in Linux Containers (LXC) before 2016-02-22. When executing a program via lxc-attach, the nonpri... |
| CVE-2016-9885 | — | — | 1.5% | Jan 6, 2017 | An issue was discovered in Pivotal GemFire for PCF 1.6.x versions prior to 1.6.5 and 1.7.x versions prior to 1.7.1. The ... |
| CVE-2016-9879 | — | — | 1.4% | Jan 6, 2017 | An issue was discovered in Pivotal Spring Security before 3.2.10, 4.1.x before 4.1.4, and 4.2.x before 4.2.1. Spring Sec... |
| CVE-2016-9869 | — | — | 0.3% | Jan 6, 2017 | An issue was discovered in EMC ScaleIO versions before 2.0.1.1. Incorrect permissions on the SCINI driver may allow a lo... |
| CVE-2016-9868 | — | — | 0.3% | Jan 6, 2017 | An issue was discovered in EMC ScaleIO versions before 2.0.1.1. A low-privileged local attacker may cause a denial-of-se... |
| CVE-2016-9867 | — | — | 0.4% | Jan 6, 2017 | An issue was discovered in EMC ScaleIO versions before 2.0.1.1. A low-privileged local attacker may be able to modify th... |
| CVE-2016-9886 | — | — | — | Jan 6, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2016-9876 | — | — | — | Jan 6, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2016-9875 | — | — | — | Jan 6, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2016-9874 | — | — | — | Jan 6, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2016-5684 | — | — | 1.8% | Jan 6, 2017 | An exploitable out-of-bounds write vulnerability exists in the XMP image handling functionality of the FreeImage library... |
| CVE-2016-5652 | — | — | 4.3% | Jan 6, 2017 | An exploitable heap-based buffer overflow exists in the handling of TIFF images in LibTIFF's TIFF2PDF tool. A crafted TI... |
| CVE-2016-5646 | — | — | 2.0% | Jan 6, 2017 | An exploitable heap overflow vulnerability exists in the Compound Binary File Format (CBFF) parser functionality of Lexm... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now