2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-9865An issue was discovered in phpMyAdmin. Due to a bug in serialized string parsing, it was possible to bypass the protecti...
CVE-2016-9864An issue was discovered in phpMyAdmin. With a crafted username or a table name, it was possible to inject SQL statements...
CVE-2016-9863An issue was discovered in phpMyAdmin. With a very large request to table partitioning function, it is possible to invok...
CVE-2016-9862An issue was discovered in phpMyAdmin. With a crafted login request it is possible to inject BBCode in the login page. A...
CVE-2016-9861An issue was discovered in phpMyAdmin. Due to the limitation in URL matching, it was possible to bypass the URL white-li...
CVE-2016-9860An issue was discovered in phpMyAdmin. An unauthenticated user can execute a denial of service attack when phpMyAdmin is...
CVE-2016-9859An issue was discovered in phpMyAdmin. With a crafted request parameter value it is possible to initiate a denial of ser...
CVE-2016-9858An issue was discovered in phpMyAdmin. With a crafted request parameter value it is possible to initiate a denial of ser...
CVE-2016-9857An issue was discovered in phpMyAdmin. XSS is possible because of a weakness in a regular expression used in some JavaSc...
CVE-2016-9856An XSS issue was discovered in phpMyAdmin because of an improper fix for CVE-2016-2559 in PMASA-2016-10. This issue is r...
CVE-2016-9855An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is p...
CVE-2016-9854An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is p...
CVE-2016-9853An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is p...
CVE-2016-9852An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is p...
CVE-2016-9851An issue was discovered in phpMyAdmin. With a crafted request parameter value it is possible to bypass the logout timeou...
CVE-2016-9850An issue was discovered in phpMyAdmin. Username matching for the allow/deny rules may result in wrong matches and detect...
CVE-2016-9849An issue was discovered in phpMyAdmin. It is possible to bypass AllowRoot restriction ($cfg['Servers'][$i]['AllowRoot'])...
CVE-2016-9848An issue was discovered in phpMyAdmin. phpinfo (phpinfo.php) shows PHP information including values of HttpOnly cookies....
CVE-2016-9847An issue was discovered in phpMyAdmin. When the user does not specify a blowfish_secret key for encrypting cookies, phpM...
CVE-2016-6633An issue was discovered in phpMyAdmin. phpMyAdmin can be used to trigger a remote code execution attack against certain ...
CVE-2016-6632An issue was discovered in phpMyAdmin where, under certain conditions, phpMyAdmin may not delete temporary files during ...
CVE-2016-6631An issue was discovered in phpMyAdmin. A user can execute a remote code execution attack against a server when phpMyAdmi...
CVE-2016-6630An issue was discovered in phpMyAdmin. An authenticated user can trigger a denial-of-service (DoS) attack by entering a ...
CVE-2016-6629An issue was discovered in phpMyAdmin involving the $cfg['ArbitraryServerRegexp'] configuration directive. An attacker c...
CVE-2016-6628An issue was discovered in phpMyAdmin. An attacker may be able to trigger a user to download a specially crafted malicio...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now