2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-7964 | — | — | 1.8% | Oct 31, 2016 | The sendRequest method in HTTPClient Class in file /inc/HTTPClient.php in DokuWiki 2016-06-26a and older, when media fil... |
| CVE-2016-9118 | — | — | 3.1% | Oct 30, 2016 | Heap Buffer Overflow (WRITE of size 4) in function pnmtoimage of convert.c:1719 in OpenJPEG 2.1.2. |
| CVE-2016-9117 | — | — | 2.2% | Oct 30, 2016 | NULL Pointer Access in function imagetopnm of convert.c(jp2):1289 in OpenJPEG 2.1.2. Impact is Denial of Service. Someon... |
| CVE-2016-9116 | — | — | 2.2% | Oct 30, 2016 | NULL Pointer Access in function imagetopnm of convert.c:2226(jp2) in OpenJPEG 2.1.2. Impact is Denial of Service. Someon... |
| CVE-2016-9115 | — | — | 2.1% | Oct 30, 2016 | Heap Buffer Over-read in function imagetotga of convert.c(jp2):942 in OpenJPEG 2.1.2. Impact is Denial of Service. Someo... |
| CVE-2016-9114 | — | — | 3.1% | Oct 30, 2016 | There is a NULL Pointer Access in function imagetopnm of convert.c:1943(jp2) of OpenJPEG 2.1.2. image->comps[compno].dat... |
| CVE-2016-9113 | — | — | 3.0% | Oct 30, 2016 | There is a NULL pointer dereference in function imagetobmp of convertbmp.c:980 of OpenJPEG 2.1.2. image->comps[0].data i... |
| CVE-2016-9112 | — | — | 3.2% | Oct 29, 2016 | Floating Point Exception (aka FPE or divide by zero) in opj_pi_next_cprl function in openjp2/pi.c:523 in OpenJPEG 2.1.2. |
| CVE-2016-7506 | — | — | 2.4% | Oct 29, 2016 | An out-of-bounds read vulnerability was observed in Sp_replace_regexp function of Artifex Software, Inc. MuJS before 500... |
| CVE-2016-7505 | — | — | 3.0% | Oct 29, 2016 | A buffer overflow vulnerability was observed in divby function of Artifex Software, Inc. MuJS before 8c805b4eb19cf2af689... |
| CVE-2016-7504 | — | — | 2.8% | Oct 29, 2016 | A use-after-free vulnerability was observed in Rp_toString function of Artifex Software, Inc. MuJS before 5c337af4b3df80... |
| CVE-2016-5920 | — | — | 0.8% | Oct 29, 2016 | Cross-site scripting (XSS) vulnerability in the Web UI in IBM Financial Transaction Manager (FTM) for ACH Services 3.0.0... |
| CVE-2016-3060 | — | — | 0.8% | Oct 29, 2016 | Payments Director in IBM Financial Transaction Manager (FTM) for ACH Services, Check Services, and Corporate Payment Ser... |
| CVE-2016-4396 | — | — | 4.1% | Oct 28, 2016 | HPE System Management Homepage before v7.6 allows remote attackers to have an unspecified impact via unknown vectors, re... |
| CVE-2016-4395 | — | — | 3.9% | Oct 28, 2016 | HPE System Management Homepage before v7.6 allows remote attackers to have an unspecified impact via unknown vectors, re... |
| CVE-2016-4394 | — | — | 2.6% | Oct 28, 2016 | HPE System Management Homepage before v7.6 allows remote attackers to obtain sensitive information via unspecified vecto... |
| CVE-2016-4393 | — | — | 1.2% | Oct 28, 2016 | HPE System Management Homepage before v7.6 allows "remote authenticated" attackers to obtain sensitive information via u... |
| CVE-2016-9028 | — | — | 1.8% | Oct 28, 2016 | Unauthorized redirect vulnerability in Citrix NetScaler ADC before 10.1 135.8, 10.5 61.11, 11.0 65.31/65.35F and 11.1 47... |
| CVE-2016-9018 | — | — | 8.1% | Oct 28, 2016 | Improper handling of a repeating VRAT chunk in qcpfformat.dll allows attackers to cause a Null pointer dereference and c... |
| CVE-2016-9017 | — | — | 1.6% | Oct 28, 2016 | Artifex Software, Inc. MuJS before a5c747f1d40e8d6659a37a8d25f13fb5acf8e767 allows context-dependent attackers to obtain... |
| CVE-2016-8889 | — | — | 0.5% | Oct 28, 2016 | In Bitcoin Knots v0.11.0.ljr20150711 through v0.13.0.knots20160814 (fixed in v0.13.1.knots20161027), the debug console s... |
| CVE-2016-8871 | — | — | 0.4% | Oct 28, 2016 | In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding options had a detectable timing channel which coul... |
| CVE-2016-8867 | — | — | 2.8% | Oct 28, 2016 | Docker Engine 1.12.2 enabled ambient capabilities with misconfigured capability policies. This allowed malicious images ... |
| CVE-2016-8600 | — | — | 1.8% | Oct 28, 2016 | In dotCMS 3.2.1, attacker can load captcha once, fill it with correct value and then this correct value is ok for forms ... |
| CVE-2016-8598 | — | — | 2.3% | Oct 28, 2016 | Buffer overflow in the zmq interface in csp_if_zmqhub.c in the libcsp library v1.4 and earlier allows hostile computers ... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now