2016 CVE Vulnerabilities

10,648 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-8922——Exphox WebRadar is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript cod...
CVE-2016-8921——IBM FileNet WorkPlace XT could allow a remote attacker to upload arbitrary files, which could allow the attacker to exec...
CVE-2016-8920——IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 is vulnerable to cross-site scripting. This vulnerability allows users to...
CVE-2016-8918——IBM Integration Bus, under non default configurations, could allow a remote user to authenticate without providing valid...
CVE-2016-8913——IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to traverse directories on the system. An a...
CVE-2016-8912——IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 stores potentially sensitive information in in log files that could be re...
CVE-2016-8911——IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to hijack the clicking action of the victim...
CVE-2016-6126——IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to traverse directories on the system. An a...
CVE-2016-6125——IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 is vulnerable to cross-site scripting. This vulnerability allows users to...
CVE-2016-6124——IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to upload arbitrary files, which could allo...
CVE-2016-6123——IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 is vulnerable to cross-site scripting. This vulnerability allows users to...
CVE-2016-6122——IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 discloses answers to security questions in a response to authenticated us...
CVE-2016-6113——IBM Verse is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in t...
CVE-2016-6090CRITICAL9.8IBM WebSphere Commerce contains an unspecified vulnerability that could allow disclosure of user personal data, performi...
CVE-2016-6085——IBM BigFix Platform could allow an attacker on the local network to crash the BES and relay servers.
CVE-2016-6084——IBM BigFix Platform could allow an attacker on the local network to crash the BES server using a specially crafted XMLSc...
CVE-2016-6082——IBM BigFix Platform could allow a remote attacker to execute arbitrary code on the system, caused by a use-after-free ra...
CVE-2016-6080——The WebAdmin context for WebSphere Message Broker allows directory listings which could disclose sensitive information t...
CVE-2016-6072——IBM Maximo Asset Management is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Ja...
CVE-2016-6065——IBM Security Guardium Database Activity Monitor appliance could allow a local user to inject commands that would be exec...
CVE-2016-6061——IBM Jazz Foundation is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript...
CVE-2016-6059——IBM InfoSphere Information Server is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE)...
CVE-2016-6054——IBM Jazz Foundation is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript...
CVE-2016-6047——IBM Jazz Reporting Service (JRS) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitra...
CVE-2016-6046——IBM Tivoli Storage Manager Operations Center is vulnerable to cross-site scripting. This vulnerability allows users to e...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now