2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-1000103 | — | — | — | Feb 3, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2016-1000105 | — | — | — | Jan 31, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2016-2033 | — | — | — | Jan 31, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was associated with multiple... |
| CVE-2016-2032 | HIGH | 7.5 | 2.7% | Jan 31, 2020 | A vulnerability exists in the Aruba AirWave Management Platform 8.x prior to 8.2 in the management interface of an under... |
| CVE-2016-2031 | CRITICAL | 9.8 | 5.1% | Jan 31, 2020 | Multiple vulnerabilities exists in Aruba Instate before 4.1.3.0 and 4.2.3.1 due to insufficient validation of user-suppl... |
| CVE-2016-1000237 | MEDIUM | 6.1 | 0.8% | Jan 23, 2020 | sanitize-html before 1.4.3 has XSS. |
| CVE-2016-4761 | HIGH | 8.8 | 1.4% | Jan 22, 2020 | WebKitGTK+ before 2.14.0: A use-after-free vulnerability can allow remote attackers to cause a DoS |
| CVE-2016-11018 | CRITICAL | 9.8 | 2.4% | Jan 21, 2020 | An issue was discovered in the Huge-IT gallery-images plugin before 1.9.0 for WordPress. The headers Client-Ip and X-For... |
| CVE-2016-6592 | HIGH | 7.8 | 1.0% | Jan 14, 2020 | A vulnerability was found in Symantec Norton Download Manager versions prior to 5.6. A remote user can create a speciall... |
| CVE-2016-5311 | HIGH | 7.8 | 0.7% | Jan 9, 2020 | A Privilege Escalation vulnerability exists in Symantec Norton Antivirus, Norton AntiVirus with Backup, Norton Security,... |
| CVE-2016-6585 | MEDIUM | 5.3 | 1.4% | Jan 8, 2020 | A Denial of Service vulnerability exists in Symantec Norton Mobile Security for Android prior to 3.16, which could let a... |
| CVE-2016-5346 | MEDIUM | 5.5 | 0.3% | Jan 8, 2020 | An Information Disclosure vulnerability exists in the Google Pixel/Pixel SL Qualcomm Avtimer Driver due to a NULL pointe... |
| CVE-2016-6587 | MEDIUM | 5.5 | 0.5% | Jan 8, 2020 | An Information Disclosure vulnerability exists in the mid.dat file stored on the SD card in Symantec Norton Mobile Secur... |
| CVE-2016-6588 | MEDIUM | 5.4 | 0.8% | Jan 8, 2020 | A Cross-Site Scripting (XSS) vulnerability exists in the ITMS workflow process manager console in Symantec IT Management... |
| CVE-2016-6586 | LOW | 3.7 | 1.3% | Jan 8, 2020 | A security bypass vulnerability exists in Symantec Norton Mobile Security for Android before 3.16, which could let a mal... |
| CVE-2016-6593 | HIGH | 7.8 | 0.8% | Jan 8, 2020 | A code-execution vulnerability exists during startup in jhi.dll and otpiha.dll in Symantec VIP Access Desktop before 2.2... |
| CVE-2016-6591 | HIGH | 7.1 | 0.3% | Jan 8, 2020 | A security bypass vulnerability exists in Symantec Norton App Lock 1.0.3.186 and earlier if application pinning is enabl... |
| CVE-2016-6590 | HIGH | 7.8 | 0.3% | Jan 8, 2020 | A privilege escalation vulnerability exists when loading DLLs during boot up and reboot in Symantec IT Management Suite ... |
| CVE-2016-6589 | MEDIUM | 6.5 | 1.7% | Jan 8, 2020 | A Denial of Service vulnerability exists in the ITMS workflow process manager login window in Symantec IT Management Sui... |
| CVE-2016-11017 | CRITICAL | 9.8 | 4.4% | Jan 6, 2020 | The application login page in AKIPS Network Monitor 15.37 through 16.5 allows a remote unauthenticated attacker to execu... |
| CVE-2016-1000027 | CRITICAL | 9.8 | 32.3% | Jan 2, 2020 | Pivotal Spring Framework through 5.3.16 suffers from a potential remote code execution (RCE) issue if used for Java dese... |
| CVE-2016-1000029 | MEDIUM | 4.8 | 0.9% | Dec 27, 2019 | Tenable Nessus before 6.8 has a stored XSS issue that requires admin-level authentication to the Nessus UI, and would po... |
| CVE-2016-1000028 | MEDIUM | 4.8 | 0.9% | Dec 27, 2019 | Tenable Nessus before 6.8 has a stored XSS issue that requires admin-level authentication to the Nessus UI, and would on... |
| CVE-2016-1000229 | MEDIUM | 6.1 | 4.0% | Dec 20, 2019 | swagger-ui has XSS in key names |
| CVE-2016-1000022 | — | — | — | Dec 20, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-10539. Reason: This candidate is a duplicate of ... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now