2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-5649A vulnerability is in the 'BSW_cxttongr.htm' page of the Netgear DGN2200, version DGN2200-V1.0.0.50_7.0.50, and DGND3700...
CVE-2016-5638There are few web pages associated with the genie app on the Netgear WNDR4500 running firmware version V1.0.1.40_1.0.687...
CVE-2016-10728An issue was discovered in Suricata before 3.1.2. If an ICMPv4 error packet is received as the first packet on a flow in...
CVE-2016-10727camel/providers/imapx/camel-imapx-server.c in the IMAPx component in GNOME evolution-data-server before 3.21.2 proceeds ...
CVE-2016-9500Accellion FTP server prior to version FTA_9_12_220 uses the Accusoft Prizm Content flash component, which contains multi...
CVE-2016-9499Accellion FTP server prior to version FTA_9_12_220 only returns the username in the server response if the username is i...
CVE-2016-9498ManageEngine Applications Manager 12 and 13 before build 13200, allows unserialization of unsafe Java objects. The vulne...
CVE-2016-9497Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, is vulnerable to an authentication...
CVE-2016-9496Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, lacks authentication. An unauthent...
CVE-2016-9495Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, uses hard coded credentials. Acces...
CVE-2016-9494Hughes high-performance broadband satellite modems, models HN7740S DW7000 HN7000S/SM, are potentially vulnerable to impr...
CVE-2016-9493The code generated by PHP FormMail Generator prior to 17 December 2016 is vulnerable to stored cross-site scripting. In ...
CVE-2016-9492The code generated by PHP FormMail Generator prior to 17 December 2016 is vulnerable to unrestricted upload of dangerous...
CVE-2016-9491ManageEngine Applications Manager 12 and 13 before build 13690 allows an authenticated user, who is able to access /regi...
CVE-2016-9489In ManageEngine Applications Manager 12 and 13 before build 13200, an authenticated user is able to alter all of their o...
CVE-2016-9486On Windows endpoints, the SecureConnector agent must run under the local SYSTEM account or another administrator account...
CVE-2016-9485On Windows endpoints, the SecureConnector agent must run under the local SYSTEM account or another administrator account...
CVE-2016-9484The generated PHP form code does not properly validate user input folder directories, allowing a remote unauthenticated ...
CVE-2016-9483The PHP form code generated by PHP FormMail Generator deserializes untrusted input as part of the phpfmg_filman_download...
CVE-2016-9482Code generated by PHP FormMail Generator may allow a remote unauthenticated user to bypass authentication in the to acce...
CVE-2016-6567SHDesigns' Resident Download Manager provides firmware update capabilities for Rabbit 2000/3000 CPU boards, which accord...
CVE-2016-6566The valueAsString parameter inside the JSON payload contained by the ucLogin_txtLoginId_ClientStat POST parameter of the...
CVE-2016-6565The Imagely NextGen Gallery plugin for Wordpress prior to version 2.1.57 does not properly validate user input in the cs...
CVE-2016-6564Android devices with code from Ragentek contain a privileged binary that performs over-the-air (OTA) update checks. Addi...
CVE-2016-6563Processing malformed SOAP messages when performing the HNAP Login action causes a buffer overflow in the stack in some D...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now