2016 CVE Vulnerabilities

10,648 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-5941——IBM Kenexa LMS on Cloud could allow a remote attacker to traverse directories on the system. An attacker could send a sp...
CVE-2016-5940——IBM Kenexa LMS on Cloud is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaSc...
CVE-2016-5938——IBM Kenexa LMS on Cloud allows web pages to be stored locally which can be read by another user on the system.
CVE-2016-5881——IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in ...
CVE-2016-2992——IBM Infosphere BigInsights is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav...
CVE-2016-2942——IBM UrbanCode Deploy could allow an authenticated attacker with special permissions to craft a script on the server in a...
CVE-2016-2941——IBM UrbanCode Deploy creates temporary files during step execution that could contain sensitive information including pa...
CVE-2016-2924——IBM Infosphere BigInsights is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. ...
CVE-2016-0320——IBM UrbanCode Deploy could allow an authenticated user to modify Ucd objects due to multiple REST endpoints not properly...
CVE-2016-0218——IBM Cognos Business Intelligence and IBM Cognos Analytics are vulnerable to cross-site scripting, caused by improper val...
CVE-2016-0217——IBM Cognos Business Intelligence and IBM Cognos Analytics are vulnerable to stored cross-site scripting, caused by impro...
CVE-2016-8967——IBM BigFix Inventory v9 9.2 stores user credentials in plain in clear text which can be read by a local user.
CVE-2016-6117——IBM Tivoli Key Lifecycle Manager 2.5 and 2.6 can be deployed with active debugging code that can disclose sensitive info...
CVE-2016-6105——IBM Tivoli Key Lifecycle Manager 2.5 and 2.6 do not perform an authentication check for a critical resource or functiona...
CVE-2016-0371MEDIUM5.5The Tivoli Storage Manager (TSM) password may be displayed in plain text via application trace output while application ...
CVE-2016-9731——IBM Business Process Manager is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J...
CVE-2016-8981——IBM BigFix Inventory v9 allows web pages to be stored locally which can be read by another user on the system.
CVE-2016-8980——IBM BigFix Inventory v9 is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error whe...
CVE-2016-8966——IBM BigFix Inventory v9 could allow a remote attacker to obtain sensitive information, caused by the failure to properly...
CVE-2016-8961——IBM BigFix Inventory v9 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By per...
CVE-2016-8943——IBM Tivoli Storage Productivity Center is vulnerable to cross-site scripting. This vulnerability allows users to embed a...
CVE-2016-8942——IBM Tivoli Storage Productivity Center could allow an authenticated user with intimate knowledge of the system to edit a...
CVE-2016-8941——IBM Tivoli Storage Productivity Center is vulnerable to cross-site request forgery which could allow an attacker to exec...
CVE-2016-8936——IBM Social Rendering Templates for Digital Data Connector is vulnerable to cross-site scripting. This vulnerability allo...
CVE-2016-8934——IBM WebSphere Application Server is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitra...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now