2016 CVE Vulnerabilities

10,648 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-8331HIGH8.1An exploitable remote code execution vulnerability exists in the handling of TIFF images in LibTIFF version 4.0.6. A cra...
CVE-2016-9028——Unauthorized redirect vulnerability in Citrix NetScaler ADC before 10.1 135.8, 10.5 61.11, 11.0 65.31/65.35F and 11.1 47...
CVE-2016-9018——Improper handling of a repeating VRAT chunk in qcpfformat.dll allows attackers to cause a Null pointer dereference and c...
CVE-2016-9017——Artifex Software, Inc. MuJS before a5c747f1d40e8d6659a37a8d25f13fb5acf8e767 allows context-dependent attackers to obtain...
CVE-2016-8889——In Bitcoin Knots v0.11.0.ljr20150711 through v0.13.0.knots20160814 (fixed in v0.13.1.knots20161027), the debug console s...
CVE-2016-8871——In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding options had a detectable timing channel which coul...
CVE-2016-8867——Docker Engine 1.12.2 enabled ambient capabilities with misconfigured capability policies. This allowed malicious images ...
CVE-2016-8600——In dotCMS 3.2.1, attacker can load captcha once, fill it with correct value and then this correct value is ok for forms ...
CVE-2016-8598——Buffer overflow in the zmq interface in csp_if_zmqhub.c in the libcsp library v1.4 and earlier allows hostile computers ...
CVE-2016-8597——Buffer overflow in the csp_sfp_recv_fp in csp_sfp.c in the libcsp library v1.4 and earlier allows hostile components wit...
CVE-2016-8596——Buffer overflow in the csp_can_process_frame in csp_if_can.c in the libcsp library v1.4 and earlier allows hostile compo...
CVE-2016-8583——Multiple GET parameters in the vulnerability scan scheduler of AlienVault OSSIM and USM before 5.3.2 are vulnerable to r...
CVE-2016-8582——A vulnerability exists in gauge.php of AlienVault OSSIM and USM before 5.3.2 that allows an attacker to execute an arbit...
CVE-2016-8581——A persistent XSS vulnerability exists in the User-Agent header of the login process of AlienVault OSSIM and USM before 5...
CVE-2016-8580——PHP object injection vulnerabilities exist in multiple widget files in AlienVault OSSIM and USM before 5.3.2. These vuln...
CVE-2016-8579——docker2aci <= 0.12.3 has an infinite loop when handling local images with cyclic dependency chain.
CVE-2016-7919HIGH7.5Moodle 3.1.2 allows remote attackers to obtain sensitive information via unspecified vectors, related to a "SQL Injectio...
CVE-2016-8339CRITICAL9.8A buffer overflow in Redis 3.2.x prior to 3.2.4 causes arbitrary code execution when a crafted command is sent. An out o...
CVE-2016-8332HIGH7.5A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing a crafted image. An exploitable code ex...
CVE-2016-6397——A vulnerability in the interdevice communications interface of the Cisco IP Interoperability and Collaboration System (I...
CVE-2016-6372——A vulnerability in the email message and content filtering for malformed Multipurpose Internet Mail Extensions (MIME) he...
CVE-2016-6360——A vulnerability in Advanced Malware Protection (AMP) for Cisco Email Security Appliances (ESA) and Web Security Applianc...
CVE-2016-6358——A vulnerability in local FTP to the Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker...
CVE-2016-6357——A vulnerability in the configured security policies, including drop email filtering, in Cisco AsyncOS for Cisco Email Se...
CVE-2016-6356——A vulnerability in the email message filtering feature of Cisco AsyncOS Software for Cisco Email Security Appliances cou...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now