2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-9028 | — | — | 1.8% | Oct 28, 2016 | Unauthorized redirect vulnerability in Citrix NetScaler ADC before 10.1 135.8, 10.5 61.11, 11.0 65.31/65.35F and 11.1 47... |
| CVE-2016-9018 | — | — | 8.1% | Oct 28, 2016 | Improper handling of a repeating VRAT chunk in qcpfformat.dll allows attackers to cause a Null pointer dereference and c... |
| CVE-2016-9017 | — | — | 1.6% | Oct 28, 2016 | Artifex Software, Inc. MuJS before a5c747f1d40e8d6659a37a8d25f13fb5acf8e767 allows context-dependent attackers to obtain... |
| CVE-2016-8889 | — | — | 0.5% | Oct 28, 2016 | In Bitcoin Knots v0.11.0.ljr20150711 through v0.13.0.knots20160814 (fixed in v0.13.1.knots20161027), the debug console s... |
| CVE-2016-8871 | — | — | 0.4% | Oct 28, 2016 | In Botan 1.11.29 through 1.11.32, RSA decryption with certain padding options had a detectable timing channel which coul... |
| CVE-2016-8867 | — | — | 2.8% | Oct 28, 2016 | Docker Engine 1.12.2 enabled ambient capabilities with misconfigured capability policies. This allowed malicious images ... |
| CVE-2016-8600 | — | — | 1.8% | Oct 28, 2016 | In dotCMS 3.2.1, attacker can load captcha once, fill it with correct value and then this correct value is ok for forms ... |
| CVE-2016-8598 | — | — | 2.3% | Oct 28, 2016 | Buffer overflow in the zmq interface in csp_if_zmqhub.c in the libcsp library v1.4 and earlier allows hostile computers ... |
| CVE-2016-8597 | — | — | 2.3% | Oct 28, 2016 | Buffer overflow in the csp_sfp_recv_fp in csp_sfp.c in the libcsp library v1.4 and earlier allows hostile components wit... |
| CVE-2016-8596 | — | — | 2.3% | Oct 28, 2016 | Buffer overflow in the csp_can_process_frame in csp_if_can.c in the libcsp library v1.4 and earlier allows hostile compo... |
| CVE-2016-8583 | — | — | 0.6% | Oct 28, 2016 | Multiple GET parameters in the vulnerability scan scheduler of AlienVault OSSIM and USM before 5.3.2 are vulnerable to r... |
| CVE-2016-8582 | — | — | 57.4% | Oct 28, 2016 | A vulnerability exists in gauge.php of AlienVault OSSIM and USM before 5.3.2 that allows an attacker to execute an arbit... |
| CVE-2016-8581 | — | — | 17.1% | Oct 28, 2016 | A persistent XSS vulnerability exists in the User-Agent header of the login process of AlienVault OSSIM and USM before 5... |
| CVE-2016-8580 | — | — | 6.9% | Oct 28, 2016 | PHP object injection vulnerabilities exist in multiple widget files in AlienVault OSSIM and USM before 5.3.2. These vuln... |
| CVE-2016-8579 | — | — | 0.4% | Oct 28, 2016 | docker2aci <= 0.12.3 has an infinite loop when handling local images with cyclic dependency chain. |
| CVE-2016-7919 | HIGH | 7.5 | 2.2% | Oct 28, 2016 | Moodle 3.1.2 allows remote attackers to obtain sensitive information via unspecified vectors, related to a "SQL Injectio... |
| CVE-2016-8339 | CRITICAL | 9.8 | 14.8% | Oct 28, 2016 | A buffer overflow in Redis 3.2.x prior to 3.2.4 causes arbitrary code execution when a crafted command is sent. An out o... |
| CVE-2016-8332 | HIGH | 7.5 | 2.6% | Oct 28, 2016 | A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing a crafted image. An exploitable code ex... |
| CVE-2016-6397 | — | — | 2.2% | Oct 28, 2016 | A vulnerability in the interdevice communications interface of the Cisco IP Interoperability and Collaboration System (I... |
| CVE-2016-6372 | — | — | 1.6% | Oct 28, 2016 | A vulnerability in the email message and content filtering for malformed Multipurpose Internet Mail Extensions (MIME) he... |
| CVE-2016-6360 | — | — | 2.2% | Oct 28, 2016 | A vulnerability in Advanced Malware Protection (AMP) for Cisco Email Security Appliances (ESA) and Web Security Applianc... |
| CVE-2016-6358 | — | — | 1.7% | Oct 28, 2016 | A vulnerability in local FTP to the Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker... |
| CVE-2016-6357 | — | — | 2.4% | Oct 28, 2016 | A vulnerability in the configured security policies, including drop email filtering, in Cisco AsyncOS for Cisco Email Se... |
| CVE-2016-6356 | — | — | 3.0% | Oct 28, 2016 | A vulnerability in the email message filtering feature of Cisco AsyncOS Software for Cisco Email Security Appliances cou... |
| CVE-2016-1486 | — | — | 3.0% | Oct 28, 2016 | A vulnerability in the email attachment scanning functionality of the Advanced Malware Protection (AMP) feature of Cisco... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now