2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-6416 | — | — | 2.0% | Oct 5, 2016 | The FTP service in Cisco AsyncOS on Email Security Appliance (ESA) devices 9.6.0-000 through 9.9.6-026, Web Security App... |
| CVE-2016-6392 | — | — | 2.6% | Oct 5, 2016 | Cisco IOS 12.2 and 15.0 through 15.3 and IOS XE 3.1 through 3.9 allow remote attackers to cause a denial of service (dev... |
| CVE-2016-6386 | — | — | 2.9% | Oct 5, 2016 | Cisco IOS XE 3.1 through 3.17 and 16.1 on 64-bit platforms allows remote attackers to cause a denial of service (data-st... |
| CVE-2016-6382 | — | — | 4.9% | Oct 5, 2016 | Cisco IOS 15.2 through 15.6 and IOS XE 3.6 through 3.17 and 16.1 allow remote attackers to cause a denial of service (de... |
| CVE-2016-6381 | — | — | 3.2% | Oct 5, 2016 | Cisco IOS 12.4 and 15.0 through 15.6 and IOS XE 3.1 through 3.18 and 16.1 allow remote attackers to cause a denial of se... |
| CVE-2016-7561 | — | — | 1.1% | Oct 5, 2016 | Fortinet FortiWLC 6.1-2-29 and earlier, 7.0-9-1, 7.0-10-0, 8.0-5-0, 8.1-2-0, and 8.2-4-0 allow administrators to obtain ... |
| CVE-2016-7560 | — | — | 2.7% | Oct 5, 2016 | The rsyncd server in Fortinet FortiWLC 6.1-2-29 and earlier, 7.0-9-1, 7.0-10-0, 8.0-5-0, 8.1-2-0, and 8.2-4-0 has a hard... |
| CVE-2016-7435 | — | — | 3.3% | Oct 5, 2016 | The (1) SCTC_REFRESH_EXPORT_TAB_COMP, (2) SCTC_REFRESH_CHECK_ENV, and (3) SCTC_TMS_MAINTAIN_ALOG functions in the SCTC s... |
| CVE-2016-6652 | — | — | 0.8% | Oct 5, 2016 | SQL injection vulnerability in Pivotal Spring Data JPA before 1.9.6 (Gosling SR6) and 1.10.x before 1.10.4 (Hopper SR4),... |
| CVE-2016-5745 | — | — | 4.8% | Oct 5, 2016 | F5 BIG-IP LTM systems 11.x before 11.2.1 HF16, 11.3.x, 11.4.x before 11.4.1 HF11, 11.5.0, 11.5.1 before HF11, 11.5.2, 11... |
| CVE-2016-4551 | — | — | 1.4% | Oct 5, 2016 | The (1) SAP_BASIS and (2) SAP_ABA components 7.00 SP Level 0031 in SAP NetWeaver 2004s might allow remote attackers to s... |
| CVE-2016-1246 | — | — | 3.8% | Oct 5, 2016 | Buffer overflow in the DBD::mysql module before 4.037 for Perl allows context-dependent attackers to cause a denial of s... |
| CVE-2016-8343 | — | — | 3.6% | Oct 5, 2016 | Directory traversal vulnerability in INDAS Web SCADA before 3 allows remote attackers to read arbitrary files via unspec... |
| CVE-2016-6420 | — | — | 1.8% | Oct 5, 2016 | Cisco FireSIGHT System Software 4.10.3 through 5.4.0 in Firepower Management Center allows remote authenticated users to... |
| CVE-2016-6419 | — | — | 1.3% | Oct 5, 2016 | SQL injection vulnerability in Cisco Firepower Management Center 4.10.3 through 5.4.0 allows remote authenticated users ... |
| CVE-2016-5983 | — | — | 4.1% | Oct 5, 2016 | IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.43, 8.0 before 8.0.0.13, 8.5 before 8.5.5.11, 9.0 before 9.0.0.2... |
| CVE-2016-5901 | — | — | 0.8% | Oct 5, 2016 | Cross-site scripting (XSS) vulnerability in a test page in IBM Business Process Manager Advanced 8.5.6.0 through 8.5.7.0... |
| CVE-2016-5892 | — | — | 0.6% | Oct 5, 2016 | Cross-site scripting (XSS) vulnerability in IBM 10x, as used in Multi-Enterprise Integration Gateway 1.x through 1.0.0.1... |
| CVE-2016-5686 | — | — | 4.5% | Oct 5, 2016 | Johnson & Johnson Animas OneTouch Ping devices mishandle acknowledgements, which makes it easier for remote attackers to... |
| CVE-2016-5086 | — | — | 4.5% | Oct 5, 2016 | Johnson & Johnson Animas OneTouch Ping devices allow remote attackers to bypass authentication via replay attacks. |
| CVE-2016-5085 | — | — | 3.9% | Oct 5, 2016 | Johnson & Johnson Animas OneTouch Ping devices do not properly generate random numbers, which makes it easier for remote... |
| CVE-2016-5084 | — | — | 2.2% | Oct 5, 2016 | Johnson & Johnson Animas OneTouch Ping devices do not use encryption for certain data, which might allow remote attacker... |
| CVE-2016-4390 | — | — | 5.1% | Oct 5, 2016 | The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vect... |
| CVE-2016-4389 | — | — | 5.1% | Oct 5, 2016 | The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vect... |
| CVE-2016-4388 | — | — | 5.1% | Oct 5, 2016 | The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vect... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now