2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-9865 | — | — | 2.3% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. Due to a bug in serialized string parsing, it was possible to bypass the protecti... |
| CVE-2016-9864 | — | — | 1.7% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. With a crafted username or a table name, it was possible to inject SQL statements... |
| CVE-2016-9863 | — | — | 1.9% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. With a very large request to table partitioning function, it is possible to invok... |
| CVE-2016-9862 | — | — | 1.6% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. With a crafted login request it is possible to inject BBCode in the login page. A... |
| CVE-2016-9861 | — | — | 1.8% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. Due to the limitation in URL matching, it was possible to bypass the URL white-li... |
| CVE-2016-9860 | — | — | 1.9% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. An unauthenticated user can execute a denial of service attack when phpMyAdmin is... |
| CVE-2016-9859 | — | — | 2.2% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. With a crafted request parameter value it is possible to initiate a denial of ser... |
| CVE-2016-9858 | — | — | 2.3% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. With a crafted request parameter value it is possible to initiate a denial of ser... |
| CVE-2016-9857 | — | — | 1.5% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. XSS is possible because of a weakness in a regular expression used in some JavaSc... |
| CVE-2016-9856 | — | — | 1.5% | Dec 11, 2016 | An XSS issue was discovered in phpMyAdmin because of an improper fix for CVE-2016-2559 in PMASA-2016-10. This issue is r... |
| CVE-2016-9855 | — | — | 2.5% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is p... |
| CVE-2016-9854 | — | — | 2.2% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is p... |
| CVE-2016-9853 | — | — | 2.5% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is p... |
| CVE-2016-9852 | — | — | 2.2% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is p... |
| CVE-2016-9851 | — | — | 1.3% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. With a crafted request parameter value it is possible to bypass the logout timeou... |
| CVE-2016-9850 | — | — | 2.0% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. Username matching for the allow/deny rules may result in wrong matches and detect... |
| CVE-2016-9849 | — | — | 2.0% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. It is possible to bypass AllowRoot restriction ($cfg['Servers'][$i]['AllowRoot'])... |
| CVE-2016-9848 | — | — | 1.3% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. phpinfo (phpinfo.php) shows PHP information including values of HttpOnly cookies.... |
| CVE-2016-9847 | — | — | 2.0% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. When the user does not specify a blowfish_secret key for encrypting cookies, phpM... |
| CVE-2016-6633 | — | — | 4.0% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. phpMyAdmin can be used to trigger a remote code execution attack against certain ... |
| CVE-2016-6632 | — | — | 2.2% | Dec 11, 2016 | An issue was discovered in phpMyAdmin where, under certain conditions, phpMyAdmin may not delete temporary files during ... |
| CVE-2016-6631 | — | — | 4.8% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. A user can execute a remote code execution attack against a server when phpMyAdmi... |
| CVE-2016-6630 | — | — | 2.0% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. An authenticated user can trigger a denial-of-service (DoS) attack by entering a ... |
| CVE-2016-6629 | — | — | 3.1% | Dec 11, 2016 | An issue was discovered in phpMyAdmin involving the $cfg['ArbitraryServerRegexp'] configuration directive. An attacker c... |
| CVE-2016-6628 | — | — | 1.1% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. An attacker may be able to trigger a user to download a specially crafted malicio... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now