2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-9757In the Create Tags page of the Rapid7 Nexpose version 6.4.12 user interface, any authenticated user who has the capabili...
CVE-2016-5303Cross-site scripting (XSS) vulnerability in the Horde Text Filter API in Horde Groupware and Horde Groupware Webmail Edi...
CVE-2016-4552Cross-site scripting (XSS) vulnerability in Roundcube Webmail before 1.2.0 allows remote attackers to inject arbitrary w...
CVE-2016-7300Untrusted search path vulnerability in Microsoft Auto Updater for Mac allows local users to gain privileges via a Trojan...
CVE-2016-7298Microsoft Office 2007 SP3, Office 2010 SP2, Word Viewer, Office for Mac 2011, and Office 2016 for Mac allow remote attac...
CVE-2016-7297The scripting engines in Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (m...
CVE-2016-7296The scripting engines in Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (m...
CVE-2016-7295The Common Log File System (CLFS) driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 S...
CVE-2016-7292The Installer in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Se...
CVE-2016-7291Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Office Compatibility Pack SP3, Word for Mac 2011, Word Automati...
CVE-2016-7290Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Office Compatibility Pack SP3, Word for Mac 2011, Word Automati...
CVE-2016-7289Microsoft Publisher 2010 SP2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corr...
CVE-2016-7288The scripting engines in Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (m...
CVE-2016-7287The scripting engines in Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to execute arbitrary c...
CVE-2016-7286The scripting engines in Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (m...
CVE-2016-7284Microsoft Internet Explorer 10 and 11 allows remote attackers to obtain sensitive information from process memory via a ...
CVE-2016-7283Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ...
CVE-2016-7282Cross-site scripting (XSS) vulnerability in Microsoft Internet Explorer 9 through 11 and Microsoft Edge allows remote at...
CVE-2016-7281The Web Workers implementation in Microsoft Internet Explorer 10 and 11 and Microsoft Edge allows remote attackers to by...
CVE-2016-7280Cross-site scripting (XSS) vulnerability in Microsoft Edge allows remote attackers to inject arbitrary web script or HTM...
CVE-2016-7279Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a ...
CVE-2016-7278Microsoft Internet Explorer 9 through 11 allows remote attackers to obtain sensitive information from process memory via...
CVE-2016-7277Microsoft Office 2016 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption)...
CVE-2016-7276Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office for Mac 2011, and Office 2016 for Mac allow remote a...
CVE-2016-7275Microsoft Office 2010 SP2, 2013 SP1, 2013 RT SP1, and 2016 mishandles library loading, which allows local users to gain ...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now