2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-6627 | — | — | 1.4% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. An attacker can determine the phpMyAdmin host location through the file url.php. ... |
| CVE-2016-6626 | — | — | 1.3% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. An attacker could redirect a user to a malicious web page. All 4.6.x versions (pr... |
| CVE-2016-6625 | — | — | 1.1% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. An attacker can determine whether a user is logged in to phpMyAdmin. The user's s... |
| CVE-2016-6624 | — | — | 2.0% | Dec 11, 2016 | An issue was discovered in phpMyAdmin involving improper enforcement of the IP-based authentication rules. When phpMyAdm... |
| CVE-2016-6623 | — | — | 1.7% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. An authorized user can cause a denial-of-service (DoS) attack on a server by pass... |
| CVE-2016-6622 | — | — | 1.8% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. An unauthenticated user is able to execute a denial-of-service (DoS) attack by fo... |
| CVE-2016-6620 | — | — | 3.1% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. Some data is passed to the PHP unserialize() function without verification that i... |
| CVE-2016-6619 | — | — | 1.5% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. In the user interface preference feature, a user can execute an SQL injection att... |
| CVE-2016-6618 | — | — | 1.8% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. The transformation feature allows a user to trigger a denial-of-service (DoS) att... |
| CVE-2016-6617 | — | — | 1.5% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. A specially crafted database and/or table name can be used to trigger an SQL inje... |
| CVE-2016-6616 | — | — | 1.5% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. In the "User group" and "Designer" features, a user can execute an SQL injection ... |
| CVE-2016-6615 | — | — | 1.3% | Dec 11, 2016 | XSS issues were discovered in phpMyAdmin. This affects navigation pane and database/table hiding feature (a specially-cr... |
| CVE-2016-6614 | — | — | 2.4% | Dec 11, 2016 | An issue was discovered in phpMyAdmin involving the %u username replacement functionality of the SaveDir and UploadDir f... |
| CVE-2016-6613 | — | — | 1.5% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. A user can specially craft a symlink on disk, to a file which phpMyAdmin is permi... |
| CVE-2016-6612 | — | — | 1.7% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. A user can exploit the LOAD LOCAL INFILE functionality to expose files on the ser... |
| CVE-2016-6611 | — | — | 1.6% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. A specially crafted database and/or table name can be used to trigger an SQL inje... |
| CVE-2016-6610 | — | — | 1.3% | Dec 11, 2016 | A full path disclosure vulnerability was discovered in phpMyAdmin where a user can trigger a particular error in the exp... |
| CVE-2016-6609 | — | — | 2.3% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. A specially crafted database name could be used to run arbitrary PHP commands thr... |
| CVE-2016-6608 | — | — | 1.3% | Dec 11, 2016 | XSS issues were discovered in phpMyAdmin. This affects the database privilege check and the "Remove partitioning" functi... |
| CVE-2016-6607 | — | — | 1.3% | Dec 11, 2016 | XSS issues were discovered in phpMyAdmin. This affects Zoom search (specially crafted column content can be used to trig... |
| CVE-2016-6606 | — | — | 1.4% | Dec 11, 2016 | An issue was discovered in cookie encryption in phpMyAdmin. The decryption of the username/password is vulnerable to a p... |
| CVE-2016-4412 | — | — | 1.0% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. A user can be tricked into following a link leading to phpMyAdmin, which after au... |
| CVE-2016-9832 | — | — | 4.0% | Dec 10, 2016 | PricewaterhouseCoopers (PwC) ACE-ABAP 8.10.304 for SAP Security allows remote authenticated users to conduct ABAP inject... |
| CVE-2016-5424 | — | — | 4.7% | Dec 9, 2016 | PostgreSQL before 9.1.23, 9.2.x before 9.2.18, 9.3.x before 9.3.14, 9.4.x before 9.4.9, and 9.5.x before 9.5.4 might all... |
| CVE-2016-5423 | — | — | 6.0% | Dec 9, 2016 | PostgreSQL before 9.1.23, 9.2.x before 9.2.18, 9.3.x before 9.3.14, 9.4.x before 9.4.9, and 9.5.x before 9.5.4 allow rem... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now