2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-3349 | — | — | 1.4% | Sep 14, 2016 | The kernel-mode drivers in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold a... |
| CVE-2016-3348 | — | — | 13.3% | Sep 14, 2016 | The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, ... |
| CVE-2016-3346 | — | — | 1.4% | Sep 14, 2016 | Microsoft Windows 10 Gold, 1511, and 1607 does not properly enforce permissions, which allows local users to obtain Admi... |
| CVE-2016-3345 | — | — | 32.5% | Sep 14, 2016 | The SMBv1 server in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows... |
| CVE-2016-3344 | — | — | 3.8% | Sep 14, 2016 | The Secure Kernel Mode feature in Microsoft Windows 10 Gold and 1511 allows local users to obtain sensitive information ... |
| CVE-2016-3330 | — | — | 13.7% | Sep 14, 2016 | Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a ... |
| CVE-2016-3325 | — | — | 53.9% | Sep 14, 2016 | Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to obtain sensitive information via a crafted w... |
| CVE-2016-3324 | — | — | 28.3% | Sep 14, 2016 | Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2016-3306 | — | — | 2.2% | Sep 14, 2016 | The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Serve... |
| CVE-2016-3305 | — | — | 1.5% | Sep 14, 2016 | The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Serve... |
| CVE-2016-3302 | — | — | 2.4% | Sep 14, 2016 | Microsoft Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607, when the lock screen... |
| CVE-2016-3297 | — | — | 22.6% | Sep 14, 2016 | Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a ... |
| CVE-2016-3295 | — | — | 15.0% | Sep 14, 2016 | Microsoft Internet Explorer 10 and 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a den... |
| CVE-2016-3294 | — | — | 14.2% | Sep 14, 2016 | Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a ... |
| CVE-2016-3292 | — | — | 7.1% | Sep 14, 2016 | Microsoft Internet Explorer 10 and 11 mishandles integrity settings and zone settings, which allows remote attackers to ... |
| CVE-2016-3291 | — | — | 13.0% | Sep 14, 2016 | Microsoft Internet Explorer 11 and Microsoft Edge mishandle cross-origin requests, which allows remote attackers to obta... |
| CVE-2016-3247 | — | — | 71.5% | Sep 14, 2016 | Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of ... |
| CVE-2016-0141 | — | — | 4.9% | Sep 14, 2016 | The Visual Basic macros in Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, and 2016 export a certificate-store private ke... |
| CVE-2016-0138 | — | — | 13.5% | Sep 14, 2016 | Microsoft Exchange Server 2007 SP3, 2010 SP3, 2013 SP1, 2013 Cumulative Update 12, 2013 Cumulative Update 13, 2016 Cumul... |
| CVE-2016-0137 | — | — | 6.8% | Sep 14, 2016 | The Click-to-Run (C2R) implementation in Microsoft Office 2013 SP1 and 2016 allows local users to bypass the ASLR protec... |
| CVE-2016-6399 | — | — | 1.9% | Sep 12, 2016 | Cisco ACE30 Application Control Engine Module through A5 3.3 and ACE 4700 Application Control Engine appliances through ... |
| CVE-2016-6398 | — | — | 1.3% | Sep 12, 2016 | The PPTP server in Cisco IOS 15.5(3)M does not properly initialize packet buffers, which allows remote attackers to obta... |
| CVE-2016-6396 | — | — | 1.2% | Sep 12, 2016 | Cisco Firepower Management Center before 6.1 and FireSIGHT System Software before 6.1, when certain malware blocking opt... |
| CVE-2016-6395 | — | — | 1.1% | Sep 12, 2016 | Cross-site scripting (XSS) vulnerability in the web-based management interface in Cisco Firepower Management Center befo... |
| CVE-2016-6394 | — | — | 1.4% | Sep 12, 2016 | Session fixation vulnerability in Cisco Firepower Management Center and Cisco FireSIGHT System Software through 6.1.0 al... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now