2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-7435 | — | — | 3.3% | Oct 5, 2016 | The (1) SCTC_REFRESH_EXPORT_TAB_COMP, (2) SCTC_REFRESH_CHECK_ENV, and (3) SCTC_TMS_MAINTAIN_ALOG functions in the SCTC s... |
| CVE-2016-7161 | CRITICAL | 9.8 | 6.1% | Oct 5, 2016 | Heap-based buffer overflow in the .receive callback of xlnx.xps-ethernetlite in QEMU (aka Quick Emulator) allows attacke... |
| CVE-2016-6652 | — | — | 0.8% | Oct 5, 2016 | SQL injection vulnerability in Pivotal Spring Data JPA before 1.9.6 (Gosling SR6) and 1.10.x before 1.10.4 (Hopper SR4),... |
| CVE-2016-5745 | — | — | 4.8% | Oct 5, 2016 | F5 BIG-IP LTM systems 11.x before 11.2.1 HF16, 11.3.x, 11.4.x before 11.4.1 HF11, 11.5.0, 11.5.1 before HF11, 11.5.2, 11... |
| CVE-2016-4551 | — | — | 1.4% | Oct 5, 2016 | The (1) SAP_BASIS and (2) SAP_ABA components 7.00 SP Level 0031 in SAP NetWeaver 2004s might allow remote attackers to s... |
| CVE-2016-1246 | — | — | 3.8% | Oct 5, 2016 | Buffer overflow in the DBD::mysql module before 4.037 for Perl allows context-dependent attackers to cause a denial of s... |
| CVE-2016-8343 | — | — | 3.6% | Oct 5, 2016 | Directory traversal vulnerability in INDAS Web SCADA before 3 allows remote attackers to read arbitrary files via unspec... |
| CVE-2016-6420 | — | — | 1.8% | Oct 5, 2016 | Cisco FireSIGHT System Software 4.10.3 through 5.4.0 in Firepower Management Center allows remote authenticated users to... |
| CVE-2016-6419 | — | — | 1.3% | Oct 5, 2016 | SQL injection vulnerability in Cisco Firepower Management Center 4.10.3 through 5.4.0 allows remote authenticated users ... |
| CVE-2016-5983 | — | — | 4.1% | Oct 5, 2016 | IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.43, 8.0 before 8.0.0.13, 8.5 before 8.5.5.11, 9.0 before 9.0.0.2... |
| CVE-2016-5901 | — | — | 0.8% | Oct 5, 2016 | Cross-site scripting (XSS) vulnerability in a test page in IBM Business Process Manager Advanced 8.5.6.0 through 8.5.7.0... |
| CVE-2016-5892 | — | — | 0.6% | Oct 5, 2016 | Cross-site scripting (XSS) vulnerability in IBM 10x, as used in Multi-Enterprise Integration Gateway 1.x through 1.0.0.1... |
| CVE-2016-5686 | — | — | 4.5% | Oct 5, 2016 | Johnson & Johnson Animas OneTouch Ping devices mishandle acknowledgements, which makes it easier for remote attackers to... |
| CVE-2016-5086 | — | — | 4.5% | Oct 5, 2016 | Johnson & Johnson Animas OneTouch Ping devices allow remote attackers to bypass authentication via replay attacks. |
| CVE-2016-5085 | — | — | 3.9% | Oct 5, 2016 | Johnson & Johnson Animas OneTouch Ping devices do not properly generate random numbers, which makes it easier for remote... |
| CVE-2016-5084 | — | — | 2.2% | Oct 5, 2016 | Johnson & Johnson Animas OneTouch Ping devices do not use encryption for certain data, which might allow remote attacker... |
| CVE-2016-4390 | — | — | 5.1% | Oct 5, 2016 | The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vect... |
| CVE-2016-4389 | — | — | 5.1% | Oct 5, 2016 | The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vect... |
| CVE-2016-4388 | — | — | 5.1% | Oct 5, 2016 | The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vect... |
| CVE-2016-4387 | — | — | 8.5% | Oct 5, 2016 | The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vect... |
| CVE-2016-2308 | — | — | 1.4% | Oct 5, 2016 | American Auto-Matrix Aspect-Nexus Building Automation Front-End Solutions application before 3.0.0 and Aspect-Matrix Bui... |
| CVE-2016-2307 | — | — | 1.5% | Oct 5, 2016 | American Auto-Matrix Aspect-Nexus Building Automation Front-End Solutions application before 3.0.0 and Aspect-Matrix Bui... |
| CVE-2016-6646 | — | — | 4.9% | Oct 5, 2016 | The vApp Managers web application in EMC Unisphere for VMAX Virtual Appliance 8.x before 8.3.0 and Solutions Enabler Vir... |
| CVE-2016-6645 | — | — | 3.6% | Oct 5, 2016 | The vApp Managers web application in EMC Unisphere for VMAX Virtual Appliance 8.x before 8.3.0 and Solutions Enabler Vir... |
| CVE-2016-6550 | — | — | 0.3% | Oct 5, 2016 | The U by BB&T app 1.5.4 and earlier for iOS does not properly verify X.509 certificates from SSL servers, which allows m... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now