2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-6501 | — | — | 3.8% | Dec 9, 2016 | JFrog Artifactory before 4.11 allows remote attackers to execute arbitrary code via an LDAP attribute with a crafted ser... |
| CVE-2016-6496 | — | — | 4.7% | Dec 9, 2016 | The LDAP directory connector in Atlassian Crowd before 2.8.8 and 2.9.x before 2.9.5 allows remote attackers to execute a... |
| CVE-2016-9014 | — | — | 6.1% | Dec 9, 2016 | Django before 1.8.x before 1.8.16, 1.9.x before 1.9.11, and 1.10.x before 1.10.3, when settings.DEBUG is True, allow rem... |
| CVE-2016-9013 | — | — | 5.1% | Dec 9, 2016 | Django 1.8.x before 1.8.16, 1.9.x before 1.9.11, and 1.10.x before 1.10.3 use a hardcoded password for a temporary datab... |
| CVE-2016-6523 | — | — | 1.3% | Dec 9, 2016 | Multiple cross-site scripting (XSS) vulnerabilities in the media manager in Dotclear before 2.10 allow remote attackers ... |
| CVE-2016-9920 | — | — | 5.6% | Dec 8, 2016 | steps/mail/sendmail.inc in Roundcube before 1.1.7 and 1.2.x before 1.2.3, when no SMTP server is configured and the send... |
| CVE-2016-8104 | — | — | 0.3% | Dec 8, 2016 | Buffer overflow in Intel PROSet/Wireless Software and Drivers in versions before 19.20.3 allows a local user to crash if... |
| CVE-2016-8103 | — | — | 0.3% | Dec 8, 2016 | SMM call out in all Intel Branded NUC Kits allows a local privileged user to access the System Management Mode and take ... |
| CVE-2016-8102 | — | — | 0.5% | Dec 8, 2016 | Unquoted service path vulnerability in Intel Wireless Bluetooth Drivers 16.x, 17.x, and before 18.1.1607.3129 allows loc... |
| CVE-2016-9918 | — | — | 3.5% | Dec 8, 2016 | In BlueZ 5.42, an out-of-bounds read was identified in "packet_hexdump" function in "monitor/packet.c" source file. This... |
| CVE-2016-9888 | — | — | 1.3% | Dec 8, 2016 | An error within the "tar_directory_for_file()" function (gsf-infile-tar.c) in GNOME Structured File Library before 1.14.... |
| CVE-2016-9302 | — | — | — | Dec 6, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2016-9301 | — | — | — | Dec 6, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2016-9300 | — | — | — | Dec 6, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2016-8601 | — | — | — | Dec 6, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2016-5341 | — | — | 0.9% | Dec 6, 2016 | The GPS component in Android before 2016-12-05 allows man-in-the-middle attackers to cause a denial of service (GPS sign... |
| CVE-2016-8740 | — | — | 79.1% | Dec 5, 2016 | The mod_http2 module in the Apache HTTP Server 2.4.17 through 2.4.23, when the Protocols configuration includes h2 or h2... |
| CVE-2016-9152 | — | — | 1.1% | Dec 5, 2016 | Cross-site scripting (XSS) vulnerability in ecrire/exec/plonger.php in SPIP 3.1.3 allows remote attackers to inject arbi... |
| CVE-2016-7171 | — | — | 0.9% | Dec 5, 2016 | NetApp Plug-in for Symantec NetBackup prior to version 2.0.1 makes use of a non-unique server certificate, making it vul... |
| CVE-2016-9836 | — | — | 1.9% | Dec 5, 2016 | The file scanning mechanism of JFilterInput::isFileSafe() in Joomla! CMS before 3.6.5 does not consider alternative PHP ... |
| CVE-2016-9835 | — | — | 3.9% | Dec 5, 2016 | Directory traversal vulnerability in file "jcss.php" in Zikula 1.3.x before 1.3.11 and 1.4.x before 1.4.4 on Windows all... |
| CVE-2016-9804 | — | — | 2.5% | Dec 3, 2016 | In BlueZ 5.42, a buffer overflow was observed in "commands_dump" function in "tools/parser/csr.c" source file. The issue... |
| CVE-2016-9803 | — | — | 2.5% | Dec 3, 2016 | In BlueZ 5.42, an out-of-bounds read was observed in "le_meta_ev_dump" function in "tools/parser/hci.c" source file. Thi... |
| CVE-2016-9802 | — | — | 3.3% | Dec 3, 2016 | In BlueZ 5.42, a buffer over-read was identified in "l2cap_packet" function in "monitor/packet.c" source file. This issu... |
| CVE-2016-9801 | — | — | 2.9% | Dec 3, 2016 | In BlueZ 5.42, a buffer overflow was observed in "set_ext_ctrl" function in "tools/parser/l2cap.c" source file when proc... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now