2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-6614 | — | — | 2.4% | Dec 11, 2016 | An issue was discovered in phpMyAdmin involving the %u username replacement functionality of the SaveDir and UploadDir f... |
| CVE-2016-6613 | — | — | 1.5% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. A user can specially craft a symlink on disk, to a file which phpMyAdmin is permi... |
| CVE-2016-6612 | — | — | 1.7% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. A user can exploit the LOAD LOCAL INFILE functionality to expose files on the ser... |
| CVE-2016-6611 | — | — | 1.6% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. A specially crafted database and/or table name can be used to trigger an SQL inje... |
| CVE-2016-6610 | — | — | 1.3% | Dec 11, 2016 | A full path disclosure vulnerability was discovered in phpMyAdmin where a user can trigger a particular error in the exp... |
| CVE-2016-6609 | — | — | 2.3% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. A specially crafted database name could be used to run arbitrary PHP commands thr... |
| CVE-2016-6608 | — | — | 1.3% | Dec 11, 2016 | XSS issues were discovered in phpMyAdmin. This affects the database privilege check and the "Remove partitioning" functi... |
| CVE-2016-6607 | — | — | 1.3% | Dec 11, 2016 | XSS issues were discovered in phpMyAdmin. This affects Zoom search (specially crafted column content can be used to trig... |
| CVE-2016-6606 | — | — | 1.4% | Dec 11, 2016 | An issue was discovered in cookie encryption in phpMyAdmin. The decryption of the username/password is vulnerable to a p... |
| CVE-2016-4412 | — | — | 1.0% | Dec 11, 2016 | An issue was discovered in phpMyAdmin. A user can be tricked into following a link leading to phpMyAdmin, which after au... |
| CVE-2016-9832 | — | — | 4.0% | Dec 10, 2016 | PricewaterhouseCoopers (PwC) ACE-ABAP 8.10.304 for SAP Security allows remote authenticated users to conduct ABAP inject... |
| CVE-2016-7995 | MEDIUM | 6 | 0.4% | Dec 10, 2016 | Memory leak in the ehci_process_itd function in hw/usb/hcd-ehci.c in QEMU (aka Quick Emulator) allows local guest OS adm... |
| CVE-2016-7994 | MEDIUM | 6 | 0.4% | Dec 10, 2016 | Memory leak in the virtio_gpu_resource_create_2d function in hw/display/virtio-gpu.c in QEMU (aka Quick Emulator) allows... |
| CVE-2016-7466 | MEDIUM | 6 | 0.4% | Dec 10, 2016 | Memory leak in the usb_xhci_exit function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator), when the xhci uses msix, al... |
| CVE-2016-7422 | MEDIUM | 6 | 0.4% | Dec 10, 2016 | The virtqueue_map_desc function in hw/virtio/virtio.c in QEMU (aka Quick Emulator) allows local guest OS administrators ... |
| CVE-2016-7421 | MEDIUM | 4.4 | 0.4% | Dec 10, 2016 | The pvscsi_ring_pop_req_descr function in hw/scsi/vmw_pvscsi.c in QEMU (aka Quick Emulator) allows local guest OS admini... |
| CVE-2016-7170 | MEDIUM | 4.4 | 0.4% | Dec 10, 2016 | The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU (aka Quick Emulator) allows local guest OS administrator... |
| CVE-2016-7157 | MEDIUM | 4.4 | 0.4% | Dec 10, 2016 | The (1) mptsas_config_manufacturing_1 and (2) mptsas_config_ioc_0 functions in hw/scsi/mptconfig.c in QEMU (aka Quick Em... |
| CVE-2016-7156 | MEDIUM | 4.4 | 0.4% | Dec 10, 2016 | The pvscsi_convert_sglist function in hw/scsi/vmw_pvscsi.c in QEMU (aka Quick Emulator) allows local guest OS administra... |
| CVE-2016-7155 | MEDIUM | 4.4 | 0.4% | Dec 10, 2016 | hw/scsi/vmw_pvscsi.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (out... |
| CVE-2016-7116 | MEDIUM | 6 | 0.6% | Dec 10, 2016 | Directory traversal vulnerability in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to a... |
| CVE-2016-6888 | MEDIUM | 4.4 | 0.4% | Dec 10, 2016 | Integer overflow in the net_tx_pkt_init function in hw/net/net_tx_pkt.c in QEMU (aka Quick Emulator) allows local guest ... |
| CVE-2016-6836 | MEDIUM | 6 | 0.4% | Dec 10, 2016 | The vmxnet3_complete_packet function in hw/net/vmxnet3.c in QEMU (aka Quick Emulator) allows local guest OS administrato... |
| CVE-2016-6835 | MEDIUM | 6 | 0.4% | Dec 10, 2016 | The vmxnet_tx_pkt_parse_headers function in hw/net/vmxnet_tx_pkt.c in QEMU (aka Quick Emulator) allows local guest OS ad... |
| CVE-2016-6834 | MEDIUM | 4.4 | 0.4% | Dec 10, 2016 | The net_tx_pkt_do_sw_fragmentation function in hw/net/net_tx_pkt.c in QEMU (aka Quick Emulator) allows local guest OS ad... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now