2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-1453 | CRITICAL | 9.8 | 8.1% | Oct 6, 2016 | Buffer overflow in the Overlay Transport Virtualization (OTV) GRE feature in Cisco NX-OS 5.0 through 7.3 on Nexus 7000 a... |
| CVE-2016-7020 | HIGH | 8.8 | 6.0% | Oct 5, 2016 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows ... |
| CVE-2016-6426 | — | — | 1.3% | Oct 5, 2016 | The j_spring_security_switch_user function in Cisco Unified Intelligence Center (CUIC) 8.5.4 through 9.1(1), as used in ... |
| CVE-2016-6423 | — | — | 1.2% | Oct 5, 2016 | The IKEv2 client and initiator implementations in Cisco IOS 15.5(3)M and IOS XE allow remote IKEv2 servers to cause a de... |
| CVE-2016-6421 | — | — | 1.6% | Oct 5, 2016 | Cisco IOS XR 5.2.2 allows remote attackers to cause a denial of service (process restart) via a crafted OSPF Link State ... |
| CVE-2016-6393 | HIGH | 7.5 | 4.6% | Oct 5, 2016 | The AAA service in Cisco IOS 12.0 through 12.4 and 15.0 through 15.6 and IOS XE 2.1 through 3.18 and 16.2 allows remote ... |
| CVE-2016-6391 | — | — | 1.9% | Oct 5, 2016 | Cisco IOS 12.2 and 15.0 through 15.3 allows remote attackers to cause a denial of service (traffic-processing outage) vi... |
| CVE-2016-6385 | — | — | 3.0% | Oct 5, 2016 | Memory leak in the Smart Install client implementation in Cisco IOS 12.2 and 15.0 through 15.2 and IOS XE 3.2 through 3.... |
| CVE-2016-6380 | — | — | 3.0% | Oct 5, 2016 | The DNS forwarder in Cisco IOS 12.0 through 12.4 and 15.0 through 15.6 and IOS XE 3.1 through 3.15 allows remote attacke... |
| CVE-2016-6379 | — | — | 2.9% | Oct 5, 2016 | Cisco IOS 12.2 and IOS XE 3.14 through 3.16 and 16.1 allow remote attackers to cause a denial of service (device reload)... |
| CVE-2016-6378 | — | — | 1.9% | Oct 5, 2016 | Cisco IOS XE 3.1 through 3.17 and 16.1 through 16.2 allows remote attackers to cause a denial of service (device reload)... |
| CVE-2016-1455 | — | — | 2.4% | Oct 5, 2016 | Cisco NX-OS before 7.0(3)I2(2e) and 7.0(3)I4 before 7.0(3)I4(1) has an incorrect iptables local-interface configuration,... |
| CVE-2016-6418 | MEDIUM | 6.1 | 0.9% | Oct 5, 2016 | Cross-site scripting (XSS) vulnerability in Cisco Videoscape Distribution Suite Service Manager (VDS-SM) 3.0 through 3.4... |
| CVE-2016-6417 | — | — | 0.6% | Oct 5, 2016 | Cross-site request forgery (CSRF) vulnerability in Cisco FireSIGHT System Software 4.10.2 through 6.1.0 and Firepower Ma... |
| CVE-2016-6416 | — | — | 2.0% | Oct 5, 2016 | The FTP service in Cisco AsyncOS on Email Security Appliance (ESA) devices 9.6.0-000 through 9.9.6-026, Web Security App... |
| CVE-2016-6392 | — | — | 2.6% | Oct 5, 2016 | Cisco IOS 12.2 and 15.0 through 15.3 and IOS XE 3.1 through 3.9 allow remote attackers to cause a denial of service (dev... |
| CVE-2016-6386 | — | — | 2.9% | Oct 5, 2016 | Cisco IOS XE 3.1 through 3.17 and 16.1 on 64-bit platforms allows remote attackers to cause a denial of service (data-st... |
| CVE-2016-6384 | HIGH | 7.5 | 4.2% | Oct 5, 2016 | Cisco IOS 12.2 through 12.4 and 15.0 through 15.6 and IOS XE 3.1 through 3.17 and 16.2 allow remote attackers to cause a... |
| CVE-2016-6382 | — | — | 4.9% | Oct 5, 2016 | Cisco IOS 15.2 through 15.6 and IOS XE 3.6 through 3.17 and 16.1 allow remote attackers to cause a denial of service (de... |
| CVE-2016-6381 | — | — | 3.2% | Oct 5, 2016 | Cisco IOS 12.4 and 15.0 through 15.6 and IOS XE 3.1 through 3.18 and 16.1 allow remote attackers to cause a denial of se... |
| CVE-2016-7909 | MEDIUM | 4.4 | 0.4% | Oct 5, 2016 | The pcnet_rdra_addr function in hw/net/pcnet.c in QEMU (aka Quick Emulator) allows local guest OS administrators to caus... |
| CVE-2016-7908 | MEDIUM | 4.4 | 0.4% | Oct 5, 2016 | The mcf_fec_do_tx function in hw/net/mcf_fec.c in QEMU (aka Quick Emulator) does not properly limit the buffer descripto... |
| CVE-2016-7907 | MEDIUM | 4.4 | 0.4% | Oct 5, 2016 | The imx_fec_do_tx function in hw/net/imx_fec.c in QEMU (aka Quick Emulator) does not properly limit the buffer descripto... |
| CVE-2016-7561 | — | — | 1.1% | Oct 5, 2016 | Fortinet FortiWLC 6.1-2-29 and earlier, 7.0-9-1, 7.0-10-0, 8.0-5-0, 8.1-2-0, and 8.2-4-0 allow administrators to obtain ... |
| CVE-2016-7560 | — | — | 2.7% | Oct 5, 2016 | The rsyncd server in Fortinet FortiWLC 6.1-2-29 and earlier, 7.0-9-1, 7.0-10-0, 8.0-5-0, 8.1-2-0, and 8.2-4-0 has a hard... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now