2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-7854 | — | — | 3.8% | Oct 21, 2016 | Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acro... |
| CVE-2016-7853 | — | — | 4.8% | Oct 21, 2016 | Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acro... |
| CVE-2016-7852 | — | — | 3.8% | Oct 21, 2016 | Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acro... |
| CVE-2016-0236 | — | — | 2.5% | Oct 21, 2016 | IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 befo... |
| CVE-2016-1000119 | — | — | 2.3% | Oct 21, 2016 | SQLi and XSS in Huge IT catalog extension v1.0.4 for Joomla |
| CVE-2016-1000118 | — | — | 2.3% | Oct 21, 2016 | XSS & SQLi in HugeIT slideshow v1.0.4 |
| CVE-2016-1000117 | — | — | 2.3% | Oct 21, 2016 | XSS & SQLi in HugeIT slideshow v1.0.4 |
| CVE-2016-1000116 | — | — | 2.1% | Oct 21, 2016 | Huge-IT Portfolio Gallery manager v1.1.0 SQL Injection and XSS |
| CVE-2016-1000115 | — | — | 2.9% | Oct 21, 2016 | Huge-IT Portfolio Gallery manager v1.1.0 SQL Injection and XSS |
| CVE-2016-2848 | — | — | 25.8% | Oct 21, 2016 | ISC BIND 9.1.0 through 9.8.4-P2 and 9.9.0 through 9.9.2-P2 allows remote attackers to cause a denial of service (asserti... |
| CVE-2016-8666 | HIGH | 7.5 | 4.7% | Oct 16, 2016 | The IP stack in the Linux kernel before 4.6 allows remote attackers to cause a denial of service (stack consumption and ... |
| CVE-2016-8660 | — | — | 0.3% | Oct 16, 2016 | The XFS subsystem in the Linux kernel through 4.8.2 allows local users to cause a denial of service (fdatasync failure a... |
| CVE-2016-8658 | — | — | 0.6% | Oct 16, 2016 | Stack-based buffer overflow in the brcmf_cfg80211_start_ap function in drivers/net/wireless/broadcom/brcm80211/brcmfmac/... |
| CVE-2016-7425 | HIGH | 7.8 | 0.4% | Oct 16, 2016 | The arcmsr_iop_message_xfer function in drivers/scsi/arcmsr/arcmsr_hba.c in the Linux kernel through 4.8.2 does not rest... |
| CVE-2016-7097 | — | — | 0.4% | Oct 16, 2016 | The filesystem implementation in the Linux kernel through 4.8.2 preserves the setgid bit during a setxattr call, which a... |
| CVE-2016-7042 | — | — | 0.4% | Oct 16, 2016 | The proc_keys_show function in security/keys/proc.c in the Linux kernel through 4.8.2, when the GNU Compiler Collection ... |
| CVE-2016-7039 | HIGH | 7.5 | 7.6% | Oct 16, 2016 | The IP stack in the Linux kernel through 4.8.2 allows remote attackers to cause a denial of service (stack consumption a... |
| CVE-2016-6828 | — | — | 1.2% | Oct 16, 2016 | The tcp_check_send_head function in include/net/tcp.h in the Linux kernel before 4.7.5 does not properly maintain certai... |
| CVE-2016-6327 | — | — | 0.4% | Oct 16, 2016 | drivers/infiniband/ulp/srpt/ib_srpt.c in the Linux kernel before 4.5.1 allows local users to cause a denial of service (... |
| CVE-2016-0249 | — | — | 1.5% | Oct 16, 2016 | SQL injection vulnerability in IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p... |
| CVE-2016-0204 | — | — | 1.1% | Oct 16, 2016 | Open redirect vulnerability in IBM Cloud Orchestrator 2.4.x before 2.4.0 FP3 allows remote authenticated users to redire... |
| CVE-2016-7211 | — | — | 3.0% | Oct 14, 2016 | The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, ... |
| CVE-2016-7194 | — | — | 57.9% | Oct 14, 2016 | The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of se... |
| CVE-2016-7193 | HIGH | 7.8 | 57.7% | Oct 14, 2016 | Microsoft Word 2007 SP2, Office 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, Word for Mac 2011, Word 2016 for M... |
| CVE-2016-7190 | — | — | 66.9% | Oct 14, 2016 | The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of se... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now