2016 CVE Vulnerabilities

10,648 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-9865——An issue was discovered in phpMyAdmin. Due to a bug in serialized string parsing, it was possible to bypass the protecti...
CVE-2016-9864——An issue was discovered in phpMyAdmin. With a crafted username or a table name, it was possible to inject SQL statements...
CVE-2016-9863——An issue was discovered in phpMyAdmin. With a very large request to table partitioning function, it is possible to invok...
CVE-2016-9862——An issue was discovered in phpMyAdmin. With a crafted login request it is possible to inject BBCode in the login page. A...
CVE-2016-9861——An issue was discovered in phpMyAdmin. Due to the limitation in URL matching, it was possible to bypass the URL white-li...
CVE-2016-9860——An issue was discovered in phpMyAdmin. An unauthenticated user can execute a denial of service attack when phpMyAdmin is...
CVE-2016-9859——An issue was discovered in phpMyAdmin. With a crafted request parameter value it is possible to initiate a denial of ser...
CVE-2016-9858——An issue was discovered in phpMyAdmin. With a crafted request parameter value it is possible to initiate a denial of ser...
CVE-2016-9857——An issue was discovered in phpMyAdmin. XSS is possible because of a weakness in a regular expression used in some JavaSc...
CVE-2016-9856——An XSS issue was discovered in phpMyAdmin because of an improper fix for CVE-2016-2559 in PMASA-2016-10. This issue is r...
CVE-2016-9855——An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is p...
CVE-2016-9854——An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is p...
CVE-2016-9853——An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is p...
CVE-2016-9852——An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is p...
CVE-2016-9851——An issue was discovered in phpMyAdmin. With a crafted request parameter value it is possible to bypass the logout timeou...
CVE-2016-9850——An issue was discovered in phpMyAdmin. Username matching for the allow/deny rules may result in wrong matches and detect...
CVE-2016-9849——An issue was discovered in phpMyAdmin. It is possible to bypass AllowRoot restriction ($cfg['Servers'][$i]['AllowRoot'])...
CVE-2016-9848——An issue was discovered in phpMyAdmin. phpinfo (phpinfo.php) shows PHP information including values of HttpOnly cookies....
CVE-2016-9847——An issue was discovered in phpMyAdmin. When the user does not specify a blowfish_secret key for encrypting cookies, phpM...
CVE-2016-6633——An issue was discovered in phpMyAdmin. phpMyAdmin can be used to trigger a remote code execution attack against certain ...
CVE-2016-6632——An issue was discovered in phpMyAdmin where, under certain conditions, phpMyAdmin may not delete temporary files during ...
CVE-2016-6631——An issue was discovered in phpMyAdmin. A user can execute a remote code execution attack against a server when phpMyAdmi...
CVE-2016-6630——An issue was discovered in phpMyAdmin. An authenticated user can trigger a denial-of-service (DoS) attack by entering a ...
CVE-2016-6629——An issue was discovered in phpMyAdmin involving the $cfg['ArbitraryServerRegexp'] configuration directive. An attacker c...
CVE-2016-6628——An issue was discovered in phpMyAdmin. An attacker may be able to trigger a user to download a specially crafted malicio...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now