2016 CVE Vulnerabilities

10,648 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-6627——An issue was discovered in phpMyAdmin. An attacker can determine the phpMyAdmin host location through the file url.php. ...
CVE-2016-6626——An issue was discovered in phpMyAdmin. An attacker could redirect a user to a malicious web page. All 4.6.x versions (pr...
CVE-2016-6625——An issue was discovered in phpMyAdmin. An attacker can determine whether a user is logged in to phpMyAdmin. The user's s...
CVE-2016-6624——An issue was discovered in phpMyAdmin involving improper enforcement of the IP-based authentication rules. When phpMyAdm...
CVE-2016-6623——An issue was discovered in phpMyAdmin. An authorized user can cause a denial-of-service (DoS) attack on a server by pass...
CVE-2016-6622——An issue was discovered in phpMyAdmin. An unauthenticated user is able to execute a denial-of-service (DoS) attack by fo...
CVE-2016-6620——An issue was discovered in phpMyAdmin. Some data is passed to the PHP unserialize() function without verification that i...
CVE-2016-6619——An issue was discovered in phpMyAdmin. In the user interface preference feature, a user can execute an SQL injection att...
CVE-2016-6618——An issue was discovered in phpMyAdmin. The transformation feature allows a user to trigger a denial-of-service (DoS) att...
CVE-2016-6617——An issue was discovered in phpMyAdmin. A specially crafted database and/or table name can be used to trigger an SQL inje...
CVE-2016-6616——An issue was discovered in phpMyAdmin. In the "User group" and "Designer" features, a user can execute an SQL injection ...
CVE-2016-6615——XSS issues were discovered in phpMyAdmin. This affects navigation pane and database/table hiding feature (a specially-cr...
CVE-2016-6614——An issue was discovered in phpMyAdmin involving the %u username replacement functionality of the SaveDir and UploadDir f...
CVE-2016-6613——An issue was discovered in phpMyAdmin. A user can specially craft a symlink on disk, to a file which phpMyAdmin is permi...
CVE-2016-6612——An issue was discovered in phpMyAdmin. A user can exploit the LOAD LOCAL INFILE functionality to expose files on the ser...
CVE-2016-6611——An issue was discovered in phpMyAdmin. A specially crafted database and/or table name can be used to trigger an SQL inje...
CVE-2016-6610——A full path disclosure vulnerability was discovered in phpMyAdmin where a user can trigger a particular error in the exp...
CVE-2016-6609——An issue was discovered in phpMyAdmin. A specially crafted database name could be used to run arbitrary PHP commands thr...
CVE-2016-6608——XSS issues were discovered in phpMyAdmin. This affects the database privilege check and the "Remove partitioning" functi...
CVE-2016-6607——XSS issues were discovered in phpMyAdmin. This affects Zoom search (specially crafted column content can be used to trig...
CVE-2016-6606——An issue was discovered in cookie encryption in phpMyAdmin. The decryption of the username/password is vulnerable to a p...
CVE-2016-4412——An issue was discovered in phpMyAdmin. A user can be tricked into following a link leading to phpMyAdmin, which after au...
CVE-2016-9832——PricewaterhouseCoopers (PwC) ACE-ABAP 8.10.304 for SAP Security allows remote authenticated users to conduct ABAP inject...
CVE-2016-5424——PostgreSQL before 9.1.23, 9.2.x before 9.2.18, 9.3.x before 9.3.14, 9.4.x before 9.4.9, and 9.5.x before 9.5.4 might all...
CVE-2016-5423——PostgreSQL before 9.1.23, 9.2.x before 9.2.18, 9.3.x before 9.3.14, 9.4.x before 9.4.9, and 9.5.x before 9.5.4 allow rem...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now