2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-2940Multiple unspecified vulnerabilities in IBM BigFix Remote Control before 9.1.3 allow remote attackers to obtain sensitiv...
CVE-2016-2937IBM BigFix Remote Control before 9.1.3 allows remote attackers to obtain sensitive information or spoof e-mail transmiss...
CVE-2016-2936IBM BigFix Remote Control before 9.1.3 uses cleartext storage for unspecified passwords, which allows local users to obt...
CVE-2016-2935The broker application in IBM BigFix Remote Control before 9.1.3 allows remote attackers to cause a denial of service vi...
CVE-2016-2934Cross-site scripting (XSS) vulnerability in IBM BigFix Remote Control before 9.1.3 allows remote attackers to inject arb...
CVE-2016-2933Directory traversal vulnerability in IBM BigFix Remote Control before 9.1.3 allows remote authenticated administrators t...
CVE-2016-2932IBM BigFix Remote Control before 9.1.3 allows remote attackers to conduct XML injection attacks via unspecified vectors.
CVE-2016-2931IBM BigFix Remote Control before 9.1.3 allows remote attackers to obtain sensitive cleartext information by sniffing the...
CVE-2016-9481In framework/modules/core/controllers/expCommentController.php of Exponent CMS 2.4.0, content_id input is passed into sh...
CVE-2016-9480libdwarf 2016-10-21 allows context-dependent attackers to obtain sensitive information or cause a denial of service by u...
CVE-2016-8224A vulnerability has been identified in some Lenovo Notebook and ThinkServer systems where an attacker with administrativ...
CVE-2016-8223During an internal security review, Lenovo identified a local privilege escalation vulnerability in Lenovo System Interf...
CVE-2016-1251There is a vulnerability of type use-after-free affecting DBD::mysql (aka DBD-mysql or the Database Interface (DBI) MySQ...
CVE-2016-5685Dell iDRAC7 and iDRAC8 devices with firmware before 2.40.40.40 allow authenticated users to gain Bash shell access throu...
CVE-2016-5765Administrative Server in Micro Focus Host Access Management and Security Server (MSS) and Reflection for the Web (RWeb) ...
CVE-2016-5393In Apache Hadoop 2.6.x before 2.6.5 and 2.7.x before 2.7.3, a remote user who can authenticate with the HDFS NameNode ca...
CVE-2016-9644The __get_user_asm_ex macro in arch/x86/include/asm/uaccess.h in the Linux kernel 4.4.22 through 4.4.28 contains extende...
CVE-2016-9191The cgroup offline implementation in the Linux kernel through 4.8.11 mishandles certain drain operations, which allows l...
CVE-2016-9178The __get_user_asm_ex macro in arch/x86/include/asm/uaccess.h in the Linux kernel before 4.7.5 does not initialize a cer...
CVE-2016-9084drivers/vfio/pci/vfio_pci_intrs.c in the Linux kernel through 4.8.11 misuses the kzalloc function, which allows local us...
CVE-2016-8650The mpi_powm function in lib/mpi/mpi-pow.c in the Linux kernel through 4.8.11 does not ensure that memory is allocated f...
CVE-2016-8646The hash_accept function in crypto/algif_hash.c in the Linux kernel before 4.3.6 allows local users to cause a denial of...
CVE-2016-8645The TCP stack in the Linux kernel before 4.8.10 mishandles skb truncation, which allows local users to cause a denial of...
CVE-2016-8633drivers/firewire/net.c in the Linux kernel before 4.8.7, in certain unusual hardware configurations, allows remote attac...
CVE-2016-8630The x86_decode_insn function in arch/x86/kvm/emulate.c in the Linux kernel before 4.8.7, when KVM is enabled, allows loc...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now