2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-7084 | — | — | 1.5% | Dec 29, 2016 | tpview.dll in VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows, whe... |
| CVE-2016-7083 | — | — | 1.5% | Dec 29, 2016 | VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows, when Cortado Thin... |
| CVE-2016-7082 | — | — | 0.4% | Dec 29, 2016 | VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows, when Cortado Thin... |
| CVE-2016-7081 | — | — | 0.5% | Dec 29, 2016 | Multiple heap-based buffer overflows in VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x bef... |
| CVE-2016-7080 | — | — | 0.4% | Dec 29, 2016 | The graphic acceleration functions in VMware Tools 9.x and 10.x before 10.0.9 on OS X allow local users to gain privileg... |
| CVE-2016-7079 | — | — | 0.4% | Dec 29, 2016 | The graphic acceleration functions in VMware Tools 9.x and 10.x before 10.0.9 on OS X allow local users to gain privileg... |
| CVE-2016-5329 | — | — | 0.3% | Dec 29, 2016 | VMware Fusion 8.x before 8.5 on OS X, when System Integrity Protection (SIP) is enabled, allows local users to determine... |
| CVE-2016-5328 | — | — | 0.4% | Dec 29, 2016 | VMware Tools 9.x and 10.x before 10.1.0 on OS X, when System Integrity Protection (SIP) is enabled, allows local users t... |
| CVE-2016-2246 | — | — | 0.6% | Dec 29, 2016 | HP ThinPro 4.4 through 6.1 mishandles the keyboard layout control panel and virtual keyboard application, which allows l... |
| CVE-2016-9756 | — | — | 0.4% | Dec 28, 2016 | arch/x86/kvm/emulate.c in the Linux kernel before 4.8.12 does not properly initialize Code Segment (CS) in certain error... |
| CVE-2016-9755 | — | — | 0.4% | Dec 28, 2016 | The netfilter subsystem in the Linux kernel before 4.9 mishandles IPv6 reassembly, which allows local users to cause a d... |
| CVE-2016-9685 | — | — | 0.4% | Dec 28, 2016 | Multiple memory leaks in error paths in fs/xfs/xfs_attr_list.c in the Linux kernel before 4.5.1 allow local users to cau... |
| CVE-2016-9588 | — | — | 0.4% | Dec 28, 2016 | arch/x86/kvm/vmx.c in the Linux kernel through 4.9 mismanages the #BP and #OF exceptions, which allows guest OS users to... |
| CVE-2016-6213 | — | — | 0.4% | Dec 28, 2016 | fs/namespace.c in the Linux kernel before 4.9 does not restrict how many mounts may exist in a mount namespace, which al... |
| CVE-2016-10031 | — | — | 1.1% | Dec 27, 2016 | WampServer 3.0.6 installs two services called 'wampapache' and 'wampmysqld' with weak file permissions, running with SYS... |
| CVE-2016-9224 | — | — | 1.4% | Dec 26, 2016 | A vulnerability in the Cisco Jabber Guest Server could allow an unauthenticated, remote attacker to initiate connections... |
| CVE-2016-9223 | — | — | 2.9% | Dec 26, 2016 | A vulnerability in the Docker Engine configuration of Cisco CloudCenter Orchestrator (CCO; formerly CliQr) could allow a... |
| CVE-2016-9217 | — | — | 1.3% | Dec 26, 2016 | A vulnerability in Cisco Intercloud Fabric for Business and Cisco Intercloud Fabric for Providers could allow an unauthe... |
| CVE-2016-9681 | — | — | 1.3% | Dec 25, 2016 | Multiple cross-site scripting (XSS) vulnerabilities in Serendipity before 2.0.5 allow remote authenticated users to inje... |
| CVE-2016-10041 | — | — | 1.1% | Dec 25, 2016 | An issue was discovered in Sprecher Automation SPRECON-E Service Program before 3.43 SP0. Under certain preconditions, i... |
| CVE-2016-10038 | — | — | 1.9% | Dec 24, 2016 | Directory traversal in /connectors/index.php in MODX Revolution before 2.5.2-pl allows remote attackers to perform local... |
| CVE-2016-7968 | — | — | 1.2% | Dec 23, 2016 | KMail since version 5.3.0 used a QWebEngine based viewer that had JavaScript enabled. HTML Mail contents were not saniti... |
| CVE-2016-7967 | — | — | 1.9% | Dec 23, 2016 | KMail since version 5.3.0 used a QWebEngine based viewer that had JavaScript enabled. Since the generated html is execut... |
| CVE-2016-7966 | — | — | 2.3% | Dec 23, 2016 | Through a malicious URL that contained a quote character it was possible to inject HTML code in KMail's plaintext viewer... |
| CVE-2016-7787 | — | — | 1.7% | Dec 23, 2016 | A maliciously crafted command line for kdesu can result in the user only seeing part of the commands that will actually ... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now