2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-1000103Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2016-1000105Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2016-2033Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was associated with multiple...
CVE-2016-2032HIGH7.5A vulnerability exists in the Aruba AirWave Management Platform 8.x prior to 8.2 in the management interface of an under...
CVE-2016-2031CRITICAL9.8Multiple vulnerabilities exists in Aruba Instate before 4.1.3.0 and 4.2.3.1 due to insufficient validation of user-suppl...
CVE-2016-1000237MEDIUM6.1sanitize-html before 1.4.3 has XSS.
CVE-2016-4761HIGH8.8WebKitGTK+ before 2.14.0: A use-after-free vulnerability can allow remote attackers to cause a DoS
CVE-2016-11018CRITICAL9.8An issue was discovered in the Huge-IT gallery-images plugin before 1.9.0 for WordPress. The headers Client-Ip and X-For...
CVE-2016-6592HIGH7.8A vulnerability was found in Symantec Norton Download Manager versions prior to 5.6. A remote user can create a speciall...
CVE-2016-5311HIGH7.8A Privilege Escalation vulnerability exists in Symantec Norton Antivirus, Norton AntiVirus with Backup, Norton Security,...
CVE-2016-6585MEDIUM5.3A Denial of Service vulnerability exists in Symantec Norton Mobile Security for Android prior to 3.16, which could let a...
CVE-2016-5346MEDIUM5.5An Information Disclosure vulnerability exists in the Google Pixel/Pixel SL Qualcomm Avtimer Driver due to a NULL pointe...
CVE-2016-6587MEDIUM5.5An Information Disclosure vulnerability exists in the mid.dat file stored on the SD card in Symantec Norton Mobile Secur...
CVE-2016-6588MEDIUM5.4A Cross-Site Scripting (XSS) vulnerability exists in the ITMS workflow process manager console in Symantec IT Management...
CVE-2016-6586LOW3.7A security bypass vulnerability exists in Symantec Norton Mobile Security for Android before 3.16, which could let a mal...
CVE-2016-6593HIGH7.8A code-execution vulnerability exists during startup in jhi.dll and otpiha.dll in Symantec VIP Access Desktop before 2.2...
CVE-2016-6591HIGH7.1A security bypass vulnerability exists in Symantec Norton App Lock 1.0.3.186 and earlier if application pinning is enabl...
CVE-2016-6590HIGH7.8A privilege escalation vulnerability exists when loading DLLs during boot up and reboot in Symantec IT Management Suite ...
CVE-2016-6589MEDIUM6.5A Denial of Service vulnerability exists in the ITMS workflow process manager login window in Symantec IT Management Sui...
CVE-2016-11017CRITICAL9.8The application login page in AKIPS Network Monitor 15.37 through 16.5 allows a remote unauthenticated attacker to execu...
CVE-2016-1000027CRITICAL9.8Pivotal Spring Framework through 5.3.16 suffers from a potential remote code execution (RCE) issue if used for Java dese...
CVE-2016-1000029MEDIUM4.8Tenable Nessus before 6.8 has a stored XSS issue that requires admin-level authentication to the Nessus UI, and would po...
CVE-2016-1000028MEDIUM4.8Tenable Nessus before 6.8 has a stored XSS issue that requires admin-level authentication to the Nessus UI, and would on...
CVE-2016-1000229MEDIUM6.1swagger-ui has XSS in key names
CVE-2016-1000022Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-10539. Reason: This candidate is a duplicate of ...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now