2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-2940 | — | — | 1.3% | Nov 30, 2016 | Multiple unspecified vulnerabilities in IBM BigFix Remote Control before 9.1.3 allow remote attackers to obtain sensitiv... |
| CVE-2016-2937 | — | — | 1.3% | Nov 30, 2016 | IBM BigFix Remote Control before 9.1.3 allows remote attackers to obtain sensitive information or spoof e-mail transmiss... |
| CVE-2016-2936 | — | — | 1.0% | Nov 30, 2016 | IBM BigFix Remote Control before 9.1.3 uses cleartext storage for unspecified passwords, which allows local users to obt... |
| CVE-2016-2935 | — | — | 1.6% | Nov 30, 2016 | The broker application in IBM BigFix Remote Control before 9.1.3 allows remote attackers to cause a denial of service vi... |
| CVE-2016-2934 | — | — | 1.1% | Nov 30, 2016 | Cross-site scripting (XSS) vulnerability in IBM BigFix Remote Control before 9.1.3 allows remote attackers to inject arb... |
| CVE-2016-2933 | — | — | 2.8% | Nov 30, 2016 | Directory traversal vulnerability in IBM BigFix Remote Control before 9.1.3 allows remote authenticated administrators t... |
| CVE-2016-2932 | — | — | 1.4% | Nov 30, 2016 | IBM BigFix Remote Control before 9.1.3 allows remote attackers to conduct XML injection attacks via unspecified vectors. |
| CVE-2016-2931 | — | — | 1.5% | Nov 30, 2016 | IBM BigFix Remote Control before 9.1.3 allows remote attackers to obtain sensitive cleartext information by sniffing the... |
| CVE-2016-9481 | — | — | 1.8% | Nov 29, 2016 | In framework/modules/core/controllers/expCommentController.php of Exponent CMS 2.4.0, content_id input is passed into sh... |
| CVE-2016-9480 | — | — | 3.3% | Nov 29, 2016 | libdwarf 2016-10-21 allows context-dependent attackers to obtain sensitive information or cause a denial of service by u... |
| CVE-2016-8224 | — | — | 0.3% | Nov 29, 2016 | A vulnerability has been identified in some Lenovo Notebook and ThinkServer systems where an attacker with administrativ... |
| CVE-2016-8223 | — | — | 0.3% | Nov 29, 2016 | During an internal security review, Lenovo identified a local privilege escalation vulnerability in Lenovo System Interf... |
| CVE-2016-1251 | — | — | 3.1% | Nov 29, 2016 | There is a vulnerability of type use-after-free affecting DBD::mysql (aka DBD-mysql or the Database Interface (DBI) MySQ... |
| CVE-2016-5685 | — | — | 1.8% | Nov 29, 2016 | Dell iDRAC7 and iDRAC8 devices with firmware before 2.40.40.40 allow authenticated users to gain Bash shell access throu... |
| CVE-2016-5765 | — | — | 2.2% | Nov 29, 2016 | Administrative Server in Micro Focus Host Access Management and Security Server (MSS) and Reflection for the Web (RWeb) ... |
| CVE-2016-5393 | — | — | 3.1% | Nov 29, 2016 | In Apache Hadoop 2.6.x before 2.6.5 and 2.7.x before 2.7.3, a remote user who can authenticate with the HDFS NameNode ca... |
| CVE-2016-9644 | — | — | 1.5% | Nov 28, 2016 | The __get_user_asm_ex macro in arch/x86/include/asm/uaccess.h in the Linux kernel 4.4.22 through 4.4.28 contains extende... |
| CVE-2016-9191 | — | — | 0.4% | Nov 28, 2016 | The cgroup offline implementation in the Linux kernel through 4.8.11 mishandles certain drain operations, which allows l... |
| CVE-2016-9178 | — | — | 0.4% | Nov 28, 2016 | The __get_user_asm_ex macro in arch/x86/include/asm/uaccess.h in the Linux kernel before 4.7.5 does not initialize a cer... |
| CVE-2016-9084 | — | — | 0.4% | Nov 28, 2016 | drivers/vfio/pci/vfio_pci_intrs.c in the Linux kernel through 4.8.11 misuses the kzalloc function, which allows local us... |
| CVE-2016-8650 | — | — | 0.4% | Nov 28, 2016 | The mpi_powm function in lib/mpi/mpi-pow.c in the Linux kernel through 4.8.11 does not ensure that memory is allocated f... |
| CVE-2016-8646 | — | — | 0.4% | Nov 28, 2016 | The hash_accept function in crypto/algif_hash.c in the Linux kernel before 4.3.6 allows local users to cause a denial of... |
| CVE-2016-8645 | — | — | 0.5% | Nov 28, 2016 | The TCP stack in the Linux kernel before 4.8.10 mishandles skb truncation, which allows local users to cause a denial of... |
| CVE-2016-8633 | — | — | 1.8% | Nov 28, 2016 | drivers/firewire/net.c in the Linux kernel before 4.8.7, in certain unusual hardware configurations, allows remote attac... |
| CVE-2016-8630 | — | — | 0.4% | Nov 28, 2016 | The x86_decode_insn function in arch/x86/kvm/emulate.c in the Linux kernel before 4.8.7, when KVM is enabled, allows loc... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now