2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-7148 | — | — | 1.2% | Nov 10, 2016 | MoinMoin 1.9.8 allows remote attackers to conduct "JavaScript injection" attacks by using the "page creation" approach, ... |
| CVE-2016-7146 | — | — | 1.2% | Nov 10, 2016 | MoinMoin 1.9.8 allows remote attackers to conduct "JavaScript injection" attacks by using the "page creation or crafted ... |
| CVE-2016-7490 | — | — | 0.6% | Nov 10, 2016 | The installation script studioexpressinstall for Teradata Studio Express 15.12.00.00 creates files in /tmp insecurely. A... |
| CVE-2016-7489 | — | — | 3.9% | Nov 10, 2016 | Teradata Virtual Machine Community Edition v15.10's perl script /opt/teradata/gsctools/bin/t2a.pl creates files in /tmp ... |
| CVE-2016-7488 | — | — | 0.5% | Nov 10, 2016 | Teradata Virtual Machine Community Edition v15.10 has insecure file permissions on /etc/luminex/pkgmgr. These could allo... |
| CVE-2016-4095 | — | — | 4.0% | Nov 10, 2016 | Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acro... |
| CVE-2016-7254 | — | — | 11.9% | Nov 10, 2016 | Microsoft SQL Server 2012 SP2 and 2012 SP3 does not properly perform a cast of an unspecified pointer, which allows remo... |
| CVE-2016-7253 | — | — | 11.9% | Nov 10, 2016 | The agent in Microsoft SQL Server 2012 SP2, 2012 SP3, 2014 SP1, 2014 SP2, and 2016 does not properly check the atxcore.d... |
| CVE-2016-7252 | — | — | 17.6% | Nov 10, 2016 | Microsoft SQL Server 2016 mishandles the FILESTREAM path, which allows remote authenticated users to gain privileges via... |
| CVE-2016-7251 | — | — | 8.2% | Nov 10, 2016 | Cross-site scripting (XSS) vulnerability in the MDS API in Microsoft SQL Server 2016 allows remote attackers to inject a... |
| CVE-2016-7250 | — | — | 12.0% | Nov 10, 2016 | Microsoft SQL Server 2014 SP1, 2014 SP2, and 2016 does not properly perform a cast of an unspecified pointer, which allo... |
| CVE-2016-7249 | — | — | 11.9% | Nov 10, 2016 | Microsoft SQL Server 2016 does not properly perform a cast of an unspecified pointer, which allows remote authenticated ... |
| CVE-2016-7248 | — | — | 21.8% | Nov 10, 2016 | Microsoft Video Control in Microsoft Windows Vista SP2, Windows 7 SP1, Windows 8.1, Windows RT 8.1, and Windows 10 Gold,... |
| CVE-2016-7247 | — | — | 6.2% | Nov 10, 2016 | Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Ser... |
| CVE-2016-7246 | — | — | 3.0% | Nov 10, 2016 | The kernel-mode drivers in Microsoft Windows Server 2008 R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold an... |
| CVE-2016-7245 | — | — | 19.6% | Nov 10, 2016 | Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2013 RT SP1, and Office 2016 allow remote attackers ... |
| CVE-2016-7244 | — | — | 16.5% | Nov 10, 2016 | Microsoft Office 2007 SP3 allows remote attackers to cause a denial of service (application hang) via a crafted Office d... |
| CVE-2016-7243 | — | — | 15.2% | Nov 10, 2016 | The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a de... |
| CVE-2016-7242 | — | — | 16.3% | Nov 10, 2016 | The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a de... |
| CVE-2016-7241 | — | — | 71.5% | Nov 10, 2016 | Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of ... |
| CVE-2016-7240 | — | — | 66.5% | Nov 10, 2016 | The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a de... |
| CVE-2016-7239 | — | — | 11.6% | Nov 10, 2016 | The RegEx class in the XSS filter in Microsoft Internet Explorer 9 through 11 and Microsoft Edge allows remote attackers... |
| CVE-2016-7238 | — | — | 1.4% | Nov 10, 2016 | Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold an... |
| CVE-2016-7237 | — | — | 64.8% | Nov 10, 2016 | Local Security Authority Subsystem Service (LSASS) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, W... |
| CVE-2016-7236 | — | — | 20.7% | Nov 10, 2016 | Microsoft Excel 2010 SP2, Excel for Mac 2011, Excel 2016 for Mac, and Excel Services on SharePoint Server 2010 SP2 allow... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now