2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-4954 | HIGH | 7.5 | 13.3% | Jul 5, 2016 | The process_packet function in ntp_proto.c in ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial o... |
| CVE-2016-4953 | HIGH | 7.5 | 17.2% | Jul 5, 2016 | ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (ephemeral-association demobilizatio... |
| CVE-2016-4997 | HIGH | 7.8 | 5.7% | Jul 3, 2016 | The compat IPT_SO_SET_REPLACE and IP6T_SO_SET_REPLACE setsockopt implementations in the netfilter subsystem in the Linux... |
| CVE-2016-1228 | HIGH | 8.8 | 1.2% | Jul 3, 2016 | Cross-site request forgery (CSRF) vulnerability on NTT EAST Hikari Denwa routers with firmware PR-400MI, RT-400MI, and R... |
| CVE-2016-1227 | HIGH | 7.2 | 2.5% | Jul 3, 2016 | NTT EAST Hikari Denwa routers with firmware PR-400MI, RT-400MI, and RV-440MI 07.00.1006 and earlier and NTT WEST Hikari ... |
| CVE-2016-3956 | HIGH | 7.5 | 6.7% | Jul 2, 2016 | The CLI in npm before 2.15.1 and 3.x before 3.8.3, as used in Node.js 0.10 before 0.10.44, 0.12 before 0.12.13, 4 before... |
| CVE-2016-4971 | HIGH | 8.8 | 45.9% | Jun 30, 2016 | GNU wget before 1.18 allows remote servers to write to arbitrary files by redirecting a request from HTTP to a crafted F... |
| CVE-2016-4472 | HIGH | 8.1 | 11.9% | Jun 30, 2016 | The overflow protection in Expat is removed by compilers with certain optimization settings, which allows remote attacke... |
| CVE-2016-4309 | HIGH | 7.5 | 9.4% | Jun 30, 2016 | Session fixation vulnerability in Symphony CMS 2.6.7, when session.use_only_cookies is disabled, allows remote attackers... |
| CVE-2016-5729 | HIGH | 8.2 | 0.4% | Jun 30, 2016 | Lenovo BIOS EFI Driver allows local administrators to execute arbitrary code with System Management Mode (SMM) privilege... |
| CVE-2016-5829 | HIGH | 7.8 | 0.5% | Jun 27, 2016 | Multiple heap-based buffer overflows in the hiddev_ioctl_usage function in drivers/hid/usbhid/hiddev.c in the Linux kern... |
| CVE-2016-5828 | HIGH | 7.8 | 0.4% | Jun 27, 2016 | The start_thread function in arch/powerpc/kernel/process.c in the Linux kernel through 4.6.3 on powerpc platforms mishan... |
| CVE-2016-4440 | HIGH | 7.8 | 0.4% | Jun 27, 2016 | arch/x86/kvm/vmx.c in the Linux kernel through 4.6.3 mishandles the APICv on/off state, which allows guest OS users to o... |
| CVE-2016-1583 | HIGH | 7.8 | 1.4% | Jun 27, 2016 | The ecryptfs_privileged_open function in fs/ecryptfs/kthread.c in the Linux kernel before 4.6.3 allows local users to ga... |
| CVE-2016-0758 | HIGH | 7.8 | 0.4% | Jun 27, 2016 | Integer overflow in lib/asn1_decoder.c in the Linux kernel before 4.6 allows local users to gain privileges via crafted ... |
| CVE-2016-4822 | HIGH | 8 | 1.1% | Jun 25, 2016 | Corega CG-WLBARGL devices allow remote authenticated users to execute arbitrary commands via unspecified vectors. |
| CVE-2016-4514 | HIGH | 7.7 | 0.9% | Jun 19, 2016 | Moxa PT-7728 devices with software 3.4 build 15081113 allow remote authenticated users to change the configuration via v... |
| CVE-2016-3643 | HIGH | 7.8 | 3.7% | Jun 17, 2016 | SolarWinds Virtualization Manager 6.3.1 and earlier allow local users to gain privileges by leveraging a misconfiguratio... |
| CVE-2016-4166 | HIGH | 8.8 | 3.9% | Jun 16, 2016 | Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsof... |
| CVE-2016-4156 | HIGH | 8.8 | 4.4% | Jun 16, 2016 | Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsof... |
| CVE-2016-4155 | HIGH | 8.8 | 4.4% | Jun 16, 2016 | Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsof... |
| CVE-2016-4154 | HIGH | 8.8 | 4.4% | Jun 16, 2016 | Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsof... |
| CVE-2016-4153 | HIGH | 8.8 | 4.4% | Jun 16, 2016 | Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsof... |
| CVE-2016-4152 | HIGH | 8.8 | 4.4% | Jun 16, 2016 | Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsof... |
| CVE-2016-4151 | HIGH | 8.8 | 4.4% | Jun 16, 2016 | Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsof... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now