2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-4611 | — | — | 1.6% | Sep 25, 2016 | WebKit in Apple iOS before 10, Safari before 10, and tvOS before 10 allows remote attackers to execute arbitrary code or... |
| CVE-2016-6532 | — | — | 3.3% | Sep 24, 2016 | DEXIS Imaging Suite 10 has a hardcoded password for the sa account, which allows remote attackers to obtain administrati... |
| CVE-2016-5793 | — | — | 0.4% | Sep 24, 2016 | Unquoted Windows search path vulnerability in Moxa Active OPC Server before 2.4.19 allows local users to gain privileges... |
| CVE-2016-4845 | — | — | 2.4% | Sep 24, 2016 | Cross-site request forgery (CSRF) vulnerability on I-O DATA DEVICE HVL-A2.0, HVL-A3.0, HVL-A4.0, HVL-AT1.0S, HVL-AT2.0, ... |
| CVE-2016-0918 | — | — | 1.1% | Sep 24, 2016 | EMC RSA Identity Management and Governance before 6.8.1 P25 and 6.9.x before 6.9.1 P15 and RSA Via Lifecycle and Governa... |
| CVE-2016-6413 | — | — | 0.3% | Sep 24, 2016 | The installation procedure on Cisco Application Policy Infrastructure Controller (APIC) devices 1.3(2f) mishandles binar... |
| CVE-2016-6412 | — | — | 1.1% | Sep 24, 2016 | The Cisco Application-hosting Framework (CAF) component in Cisco IOS 15.6(1)T1 and IOS XE, when the IOx feature set is e... |
| CVE-2016-6411 | — | — | 0.7% | Sep 24, 2016 | Cisco Firepower Management Center and FireSIGHT System Software 6.0.1 mishandle comparisons between URLs and X.509 certi... |
| CVE-2016-6410 | — | — | 1.4% | Sep 24, 2016 | The Cisco Application-hosting Framework (CAF) component in Cisco IOS 15.6(1)T1 and IOS XE, when the IOx feature set is e... |
| CVE-2016-6409 | — | — | 1.6% | Sep 24, 2016 | The Data in Motion (DMo) component in Cisco IOS 15.6(1)T and IOS XE, when the IOx feature set is enabled, allows remote ... |
| CVE-2016-6408 | — | — | 1.4% | Sep 24, 2016 | Cisco Prime Home 5.2.0 allows remote attackers to read arbitrary files via an XML document containing an external entity... |
| CVE-2016-6414 | — | — | 0.4% | Sep 22, 2016 | iox in Cisco IOS, possibly 15.6 and earlier, and IOS XE, possibly 3.18 and earlier, allows local users to execute arbitr... |
| CVE-2016-6406 | — | — | 3.6% | Sep 22, 2016 | Cisco IronPort AsyncOS 9.1.2-023, 9.1.2-028, 9.1.2-036, 9.7.2-046, 9.7.2-047, 9.7.2-054, 10.0.0-124, and 10.0.0-125 on E... |
| CVE-2016-6373 | — | — | 2.4% | Sep 22, 2016 | The web-based GUI in Cisco Cloud Services Platform (CSP) 2100 2.0 allows remote authenticated administrators to execute ... |
| CVE-2016-5284 | — | — | 2.4% | Sep 22, 2016 | Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4, and Thunderbird < 45.4 rely on unintended expiration dates fo... |
| CVE-2016-5283 | — | — | 1.5% | Sep 22, 2016 | Mozilla Firefox before 49.0 allows remote attackers to bypass the Same Origin Policy via a crafted fragment identifier i... |
| CVE-2016-5282 | — | — | 1.6% | Sep 22, 2016 | Mozilla Firefox before 49.0 does not properly restrict the scheme in favicon requests, which might allow remote attacker... |
| CVE-2016-5281 | — | — | 5.0% | Sep 22, 2016 | Use-after-free vulnerability in the DOMSVGLength class in Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4, and... |
| CVE-2016-5280 | — | — | 5.0% | Sep 22, 2016 | Use-after-free vulnerability in the mozilla::nsTextNodeDirectionalityMap::RemoveElementFromMap function in Mozilla Firef... |
| CVE-2016-5279 | — | — | 1.4% | Sep 22, 2016 | Mozilla Firefox before 49.0 allows user-assisted remote attackers to obtain sensitive full-pathname information during a... |
| CVE-2016-5278 | — | — | 4.2% | Sep 22, 2016 | Heap-based buffer overflow in the nsBMPEncoder::AddImageFrame function in Mozilla Firefox before 49.0, Firefox ESR 45.x ... |
| CVE-2016-5277 | — | — | 4.0% | Sep 22, 2016 | Use-after-free vulnerability in the nsRefreshDriver::Tick function in Mozilla Firefox before 49.0, Firefox ESR 45.x befo... |
| CVE-2016-5276 | — | — | 4.0% | Sep 22, 2016 | Use-after-free vulnerability in the mozilla::a11y::DocAccessible::ProcessInvalidationList function in Mozilla Firefox be... |
| CVE-2016-5275 | — | — | 3.1% | Sep 22, 2016 | Buffer overflow in the mozilla::gfx::FilterSupport::ComputeSourceNeededRegions function in Mozilla Firefox before 49.0 a... |
| CVE-2016-5274 | — | — | 4.1% | Sep 22, 2016 | Use-after-free vulnerability in the nsFrameManager::CaptureFrameState function in Mozilla Firefox before 49.0, Firefox E... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now