2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-1000114 | MEDIUM | 6.1 | 1.3% | Oct 6, 2016 | XSS in huge IT gallery v1.1.5 for Joomla |
| CVE-2016-1000113 | CRITICAL | 9.8 | 3.1% | Oct 6, 2016 | XSS and SQLi in huge IT gallery v1.1.5 for Joomla |
| CVE-2016-1000112 | CRITICAL | 9.1 | 8.6% | Oct 6, 2016 | Unauthenticated remote .jpg file upload in contus-video-comments v1.0 wordpress plugin |
| CVE-2016-1000106 | — | — | — | Oct 6, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-5388. Reason: This candidate is a duplicate of C... |
| CVE-2016-1000102 | — | — | — | Oct 6, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-5387. Reason: This candidate is a duplicate of C... |
| CVE-2016-1000101 | — | — | — | Oct 6, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-5386. Reason: This candidate is a duplicate of C... |
| CVE-2016-1000100 | — | — | — | Oct 6, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-5385. Reason: This candidate is a duplicate of C... |
| CVE-2016-1000014 | — | — | — | Oct 6, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-3956. Reason: This candidate is a duplicate of C... |
| CVE-2016-1000009 | — | — | 1.3% | Oct 6, 2016 | TP-LINK lost control of two domains, www.tplinklogin.net and tplinkextender.net. Please note that these domains are phys... |
| CVE-2016-1000000 | — | — | 1.3% | Oct 6, 2016 | Ipswitch WhatsUp Gold 16.4.1 WrFreeFormText.asp sUniqueID Parameter Blind SQL Injection |
| CVE-2016-6653 | — | — | 1.4% | Oct 6, 2016 | The MariaDB audit_plugin component in Pivotal Cloud Foundry (PCF) cf-mysql-release 27 and 28 allows remote attackers to ... |
| CVE-2016-6436 | — | — | 0.8% | Oct 6, 2016 | Cross-site scripting (XSS) vulnerability in HostScan Engine 3.0.08062 through 3.1.14018 in the Cisco Host Scan package, ... |
| CVE-2016-6435 | — | — | 36.6% | Oct 6, 2016 | The web console in Cisco Firepower Management Center 6.0.1 allows remote authenticated users to read arbitrary files via... |
| CVE-2016-6434 | — | — | 1.0% | Oct 6, 2016 | Cisco Firepower Management Center 6.0.1 has hardcoded database credentials, which allows local users to obtain sensitive... |
| CVE-2016-6433 | HIGH | 8.8 | 75.8% | Oct 6, 2016 | The Threat Management Console in Cisco Firepower Management Center 5.2.0 through 6.0.1 allows remote authenticated users... |
| CVE-2016-6428 | — | — | 0.4% | Oct 6, 2016 | Cisco IOS XR 6.1.1 allows local users to execute arbitrary OS commands as root by leveraging admin privileges, aka Bug I... |
| CVE-2016-6427 | — | — | 0.6% | Oct 6, 2016 | Cross-site request forgery (CSRF) vulnerability in Cisco Unified Intelligence Center (CUIC) 8.5.4 through 9.1(1), as use... |
| CVE-2016-6425 | — | — | 1.0% | Oct 6, 2016 | Cross-site scripting (XSS) vulnerability in Cisco Unified Intelligence Center (CUIC) 8.5.4 through 9.1(1), as used in Un... |
| CVE-2016-6424 | — | — | 0.9% | Oct 6, 2016 | The DHCP Relay implementation in Cisco Adaptive Security Appliance (ASA) Software 8.4.7.29 and 9.1.7.4 allows remote att... |
| CVE-2016-6422 | — | — | 1.5% | Oct 6, 2016 | Cisco IOS 12.2(33)SXJ9 on Supervisor Engine 32 and 720 modules for 6500 and 7600 devices mishandles certain operators, f... |
| CVE-2016-6027 | — | — | 0.8% | Oct 6, 2016 | The Configuration Manager in IBM Sterling Secure Proxy (SSP) 3.4.2 before 3.4.2.0 iFix 8 and 3.4.3 before 3.4.3.0 iFix 1... |
| CVE-2016-6026 | — | — | 0.4% | Oct 6, 2016 | The Configuration Manager in IBM Sterling Secure Proxy (SSP) 3.4.2 before 3.4.2.0 iFix 8 and 3.4.3 before 3.4.3.0 iFix 1... |
| CVE-2016-6025 | — | — | 0.5% | Oct 6, 2016 | The Configuration Manager in IBM Sterling Secure Proxy (SSP) 3.4.2 before 3.4.2.0 iFix 8 and 3.4.3 before 3.4.3.0 iFix 1... |
| CVE-2016-6023 | — | — | 2.1% | Oct 6, 2016 | Directory traversal vulnerability in the Configuration Manager in IBM Sterling Secure Proxy (SSP) 3.4.2 before 3.4.2.0 i... |
| CVE-2016-1454 | MEDIUM | 6.5 | 1.9% | Oct 6, 2016 | Cisco NX-OS 4.0 through 7.3 and 11.0 through 11.2 on 1000v, 2000, 3000, 3500, 5000, 5500, 5600, 6000, 7000, 7700, and 90... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now