2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-6627An issue was discovered in phpMyAdmin. An attacker can determine the phpMyAdmin host location through the file url.php. ...
CVE-2016-6626An issue was discovered in phpMyAdmin. An attacker could redirect a user to a malicious web page. All 4.6.x versions (pr...
CVE-2016-6625An issue was discovered in phpMyAdmin. An attacker can determine whether a user is logged in to phpMyAdmin. The user's s...
CVE-2016-6624An issue was discovered in phpMyAdmin involving improper enforcement of the IP-based authentication rules. When phpMyAdm...
CVE-2016-6623An issue was discovered in phpMyAdmin. An authorized user can cause a denial-of-service (DoS) attack on a server by pass...
CVE-2016-6622An issue was discovered in phpMyAdmin. An unauthenticated user is able to execute a denial-of-service (DoS) attack by fo...
CVE-2016-6620An issue was discovered in phpMyAdmin. Some data is passed to the PHP unserialize() function without verification that i...
CVE-2016-6619An issue was discovered in phpMyAdmin. In the user interface preference feature, a user can execute an SQL injection att...
CVE-2016-6618An issue was discovered in phpMyAdmin. The transformation feature allows a user to trigger a denial-of-service (DoS) att...
CVE-2016-6617An issue was discovered in phpMyAdmin. A specially crafted database and/or table name can be used to trigger an SQL inje...
CVE-2016-6616An issue was discovered in phpMyAdmin. In the "User group" and "Designer" features, a user can execute an SQL injection ...
CVE-2016-6615XSS issues were discovered in phpMyAdmin. This affects navigation pane and database/table hiding feature (a specially-cr...
CVE-2016-6614An issue was discovered in phpMyAdmin involving the %u username replacement functionality of the SaveDir and UploadDir f...
CVE-2016-6613An issue was discovered in phpMyAdmin. A user can specially craft a symlink on disk, to a file which phpMyAdmin is permi...
CVE-2016-6612An issue was discovered in phpMyAdmin. A user can exploit the LOAD LOCAL INFILE functionality to expose files on the ser...
CVE-2016-6611An issue was discovered in phpMyAdmin. A specially crafted database and/or table name can be used to trigger an SQL inje...
CVE-2016-6610A full path disclosure vulnerability was discovered in phpMyAdmin where a user can trigger a particular error in the exp...
CVE-2016-6609An issue was discovered in phpMyAdmin. A specially crafted database name could be used to run arbitrary PHP commands thr...
CVE-2016-6608XSS issues were discovered in phpMyAdmin. This affects the database privilege check and the "Remove partitioning" functi...
CVE-2016-6607XSS issues were discovered in phpMyAdmin. This affects Zoom search (specially crafted column content can be used to trig...
CVE-2016-6606An issue was discovered in cookie encryption in phpMyAdmin. The decryption of the username/password is vulnerable to a p...
CVE-2016-4412An issue was discovered in phpMyAdmin. A user can be tricked into following a link leading to phpMyAdmin, which after au...
CVE-2016-9832PricewaterhouseCoopers (PwC) ACE-ABAP 8.10.304 for SAP Security allows remote authenticated users to conduct ABAP inject...
CVE-2016-5424PostgreSQL before 9.1.23, 9.2.x before 9.2.18, 9.3.x before 9.3.14, 9.4.x before 9.4.9, and 9.5.x before 9.5.4 might all...
CVE-2016-5423PostgreSQL before 9.1.23, 9.2.x before 9.2.18, 9.3.x before 9.3.14, 9.4.x before 9.4.9, and 9.5.x before 9.5.4 allow rem...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now