2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-4747Mail in Apple iOS before 10 mishandles certificates, which makes it easier for man-in-the-middle attackers to discover m...
CVE-2016-4746The Keyboards component in Apple iOS before 10 does not properly use a cache for auto-correct suggestions, which allows ...
CVE-2016-4741The Assets component in Apple iOS before 10 allows man-in-the-middle attackers to block software updates via vectors rel...
CVE-2016-4740Apple iOS before 10, when Handoff for Messages is used, does not ensure that a Messages signin has occurred before displ...
CVE-2016-4719The GeoServices component in Apple iOS before 10 and watchOS before 3 does not properly restrict access to PlaceData inf...
CVE-2016-4705otool in Apple Xcode before 8 allows local users to gain privileges or cause a denial of service (memory corruption and ...
CVE-2016-4704otool in Apple Xcode before 8 allows local users to gain privileges or cause a denial of service (memory corruption and ...
CVE-2016-4620The Sandbox Profiles component in Apple iOS before 10 does not properly restrict access to directory metadata for SMS dr...
CVE-2016-1433Cisco IOS XR 6.0 and 6.0.1 on NCS 6000 devices allows remote attackers to cause a denial of service (OSPFv3 process relo...
CVE-2016-6643Cross-site scripting (XSS) vulnerability in EMC ViPR SRM before 3.7.2 allows remote attackers to inject arbitrary web sc...
CVE-2016-6642Cross-site request forgery (CSRF) vulnerability in EMC ViPR SRM before 3.7.2 allows remote attackers to hijack the authe...
CVE-2016-6641Cross-site scripting (XSS) vulnerability in EMC ViPR SRM before 3.7.2 allows remote authenticated users to inject arbitr...
CVE-2016-6639HIGH7.5Cloud Foundry PHP Buildpack (aka php-buildpack) before 4.3.18 and PHP Buildpack Cf-release before 242, as used in Pivota...
CVE-2016-0930Pivotal Cloud Foundry (PCF) Ops Manager before 1.6.19 and 1.7.x before 1.7.10, when vCloud or vSphere is used, has a def...
CVE-2016-0929The metrics-collection component in RabbitMQ for Pivotal Cloud Foundry (PCF) 1.6.x before 1.6.4 logs command lines of fa...
CVE-2016-0928Multiple open redirect vulnerabilities in Pivotal Cloud Foundry (PCF) Elastic Runtime before 1.6.30 and 1.7.x before 1.7...
CVE-2016-0927Cross-site scripting (XSS) vulnerability in Pivotal Cloud Foundry (PCF) Ops Manager before 1.6.17 allows remote attacker...
CVE-2016-0926Cross-site scripting (XSS) vulnerability in Apps Manager in Pivotal Cloud Foundry (PCF) Elastic Runtime before 1.6.32 an...
CVE-2016-0924Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-2761. Reason: This candidate is subsumed by CV...
CVE-2016-0923HIGH7.5The client in EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.9 and 4.1.x before 4.1.5 places the weakest algor...
CVE-2016-0922EMC ViPR SRM before 3.7.2 does not restrict the number of password-authentication attempts, which makes it easier for re...
CVE-2016-0897Pivotal Cloud Foundry (PCF) Ops Manager before 1.6.17 and 1.7.x before 1.7.8, when vCloud or vSphere is used, does not p...
CVE-2016-0896Pivotal Cloud Foundry (PCF) Elastic Runtime before 1.6.34 and 1.7.x before 1.7.12 places 169.254.0.0/16 in the all_open ...
CVE-2016-0883Pivotal Cloud Foundry (PCF) Ops Manager before 1.5.14 and 1.6.x before 1.6.9 uses the same cookie-encryption key across ...
CVE-2016-7419Cross-site scripting (XSS) vulnerability in share.js in the gallery application in ownCloud Server before 9.0.4 and Next...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now