2016 CVE Vulnerabilities

10,648 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-7964——The sendRequest method in HTTPClient Class in file /inc/HTTPClient.php in DokuWiki 2016-06-26a and older, when media fil...
CVE-2016-9118——Heap Buffer Overflow (WRITE of size 4) in function pnmtoimage of convert.c:1719 in OpenJPEG 2.1.2.
CVE-2016-9117——NULL Pointer Access in function imagetopnm of convert.c(jp2):1289 in OpenJPEG 2.1.2. Impact is Denial of Service. Someon...
CVE-2016-9116——NULL Pointer Access in function imagetopnm of convert.c:2226(jp2) in OpenJPEG 2.1.2. Impact is Denial of Service. Someon...
CVE-2016-9115——Heap Buffer Over-read in function imagetotga of convert.c(jp2):942 in OpenJPEG 2.1.2. Impact is Denial of Service. Someo...
CVE-2016-9114——There is a NULL Pointer Access in function imagetopnm of convert.c:1943(jp2) of OpenJPEG 2.1.2. image->comps[compno].dat...
CVE-2016-9113——There is a NULL pointer dereference in function imagetobmp of convertbmp.c:980 of OpenJPEG 2.1.2. image->comps[0].data i...
CVE-2016-9112——Floating Point Exception (aka FPE or divide by zero) in opj_pi_next_cprl function in openjp2/pi.c:523 in OpenJPEG 2.1.2.
CVE-2016-7506——An out-of-bounds read vulnerability was observed in Sp_replace_regexp function of Artifex Software, Inc. MuJS before 500...
CVE-2016-7505——A buffer overflow vulnerability was observed in divby function of Artifex Software, Inc. MuJS before 8c805b4eb19cf2af689...
CVE-2016-7504——A use-after-free vulnerability was observed in Rp_toString function of Artifex Software, Inc. MuJS before 5c337af4b3df80...
CVE-2016-5920——Cross-site scripting (XSS) vulnerability in the Web UI in IBM Financial Transaction Manager (FTM) for ACH Services 3.0.0...
CVE-2016-3060——Payments Director in IBM Financial Transaction Manager (FTM) for ACH Services, Check Services, and Corporate Payment Ser...
CVE-2016-4396——HPE System Management Homepage before v7.6 allows remote attackers to have an unspecified impact via unknown vectors, re...
CVE-2016-4395——HPE System Management Homepage before v7.6 allows remote attackers to have an unspecified impact via unknown vectors, re...
CVE-2016-4394——HPE System Management Homepage before v7.6 allows remote attackers to obtain sensitive information via unspecified vecto...
CVE-2016-4393——HPE System Management Homepage before v7.6 allows "remote authenticated" attackers to obtain sensitive information via u...
CVE-2016-9028——Unauthorized redirect vulnerability in Citrix NetScaler ADC before 10.1 135.8, 10.5 61.11, 11.0 65.31/65.35F and 11.1 47...
CVE-2016-9018——Improper handling of a repeating VRAT chunk in qcpfformat.dll allows attackers to cause a Null pointer dereference and c...
CVE-2016-9017——Artifex Software, Inc. MuJS before a5c747f1d40e8d6659a37a8d25f13fb5acf8e767 allows context-dependent attackers to obtain...
CVE-2016-8889——In Bitcoin Knots v0.11.0.ljr20150711 through v0.13.0.knots20160814 (fixed in v0.13.1.knots20161027), the debug console s...
CVE-2016-8871——In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding options had a detectable timing channel which coul...
CVE-2016-8867——Docker Engine 1.12.2 enabled ambient capabilities with misconfigured capability policies. This allowed malicious images ...
CVE-2016-8600——In dotCMS 3.2.1, attacker can load captcha once, fill it with correct value and then this correct value is ok for forms ...
CVE-2016-8598——Buffer overflow in the zmq interface in csp_if_zmqhub.c in the libcsp library v1.4 and earlier allows hostile computers ...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now