2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-7964The sendRequest method in HTTPClient Class in file /inc/HTTPClient.php in DokuWiki 2016-06-26a and older, when media fil...
CVE-2016-9118Heap Buffer Overflow (WRITE of size 4) in function pnmtoimage of convert.c:1719 in OpenJPEG 2.1.2.
CVE-2016-9117NULL Pointer Access in function imagetopnm of convert.c(jp2):1289 in OpenJPEG 2.1.2. Impact is Denial of Service. Someon...
CVE-2016-9116NULL Pointer Access in function imagetopnm of convert.c:2226(jp2) in OpenJPEG 2.1.2. Impact is Denial of Service. Someon...
CVE-2016-9115Heap Buffer Over-read in function imagetotga of convert.c(jp2):942 in OpenJPEG 2.1.2. Impact is Denial of Service. Someo...
CVE-2016-9114There is a NULL Pointer Access in function imagetopnm of convert.c:1943(jp2) of OpenJPEG 2.1.2. image->comps[compno].dat...
CVE-2016-9113There is a NULL pointer dereference in function imagetobmp of convertbmp.c:980 of OpenJPEG 2.1.2. image->comps[0].data i...
CVE-2016-9112Floating Point Exception (aka FPE or divide by zero) in opj_pi_next_cprl function in openjp2/pi.c:523 in OpenJPEG 2.1.2.
CVE-2016-7506An out-of-bounds read vulnerability was observed in Sp_replace_regexp function of Artifex Software, Inc. MuJS before 500...
CVE-2016-7505A buffer overflow vulnerability was observed in divby function of Artifex Software, Inc. MuJS before 8c805b4eb19cf2af689...
CVE-2016-7504A use-after-free vulnerability was observed in Rp_toString function of Artifex Software, Inc. MuJS before 5c337af4b3df80...
CVE-2016-5920Cross-site scripting (XSS) vulnerability in the Web UI in IBM Financial Transaction Manager (FTM) for ACH Services 3.0.0...
CVE-2016-3060Payments Director in IBM Financial Transaction Manager (FTM) for ACH Services, Check Services, and Corporate Payment Ser...
CVE-2016-4396HPE System Management Homepage before v7.6 allows remote attackers to have an unspecified impact via unknown vectors, re...
CVE-2016-4395HPE System Management Homepage before v7.6 allows remote attackers to have an unspecified impact via unknown vectors, re...
CVE-2016-4394HPE System Management Homepage before v7.6 allows remote attackers to obtain sensitive information via unspecified vecto...
CVE-2016-4393HPE System Management Homepage before v7.6 allows "remote authenticated" attackers to obtain sensitive information via u...
CVE-2016-9028Unauthorized redirect vulnerability in Citrix NetScaler ADC before 10.1 135.8, 10.5 61.11, 11.0 65.31/65.35F and 11.1 47...
CVE-2016-9018Improper handling of a repeating VRAT chunk in qcpfformat.dll allows attackers to cause a Null pointer dereference and c...
CVE-2016-9017Artifex Software, Inc. MuJS before a5c747f1d40e8d6659a37a8d25f13fb5acf8e767 allows context-dependent attackers to obtain...
CVE-2016-8889In Bitcoin Knots v0.11.0.ljr20150711 through v0.13.0.knots20160814 (fixed in v0.13.1.knots20161027), the debug console s...
CVE-2016-8871In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding options had a detectable timing channel which coul...
CVE-2016-8867Docker Engine 1.12.2 enabled ambient capabilities with misconfigured capability policies. This allowed malicious images ...
CVE-2016-8600In dotCMS 3.2.1, attacker can load captcha once, fill it with correct value and then this correct value is ok for forms ...
CVE-2016-8598Buffer overflow in the zmq interface in csp_if_zmqhub.c in the libcsp library v1.4 and earlier allows hostile computers ...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now