2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-3201 | — | — | 23.6% | Jun 16, 2016 | Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows 10 Gold and 1511, and Microsoft Edge allow remote attack... |
| CVE-2016-3199 | — | — | 26.6% | Jun 16, 2016 | The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of se... |
| CVE-2016-3198 | — | — | 32.5% | Jun 16, 2016 | Microsoft Edge allows remote attackers to bypass the Content Security Policy (CSP) protection mechanism via a crafted do... |
| CVE-2016-0200 | — | — | 20.7% | Jun 16, 2016 | Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2016-0199 | — | — | 51.0% | Jun 16, 2016 | Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2016-0028 | — | — | 22.6% | Jun 16, 2016 | Outlook Web Access (OWA) in Microsoft Exchange Server 2013 SP1, Cumulative Update 11, and Cumulative Update 12 and 2016 ... |
| CVE-2016-0025 | — | — | 16.7% | Jun 16, 2016 | Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Office 2016, Word 2016, Word f... |
| CVE-2016-5367 | — | — | 1.0% | Jun 14, 2016 | Huawei Honor WS851 routers with software 1.1.21.1 and earlier allow remote attackers to obtain sensitive information via... |
| CVE-2016-5366 | — | — | 0.7% | Jun 14, 2016 | Huawei Honor WS851 routers with software 1.1.21.1 and earlier allow remote attackers to modify configuration data via ve... |
| CVE-2016-5365 | — | — | 2.1% | Jun 14, 2016 | Stack-based buffer overflow in Huawei Honor WS851 routers with software 1.1.21.1 and earlier allows remote attackers to ... |
| CVE-2016-4579 | — | — | 3.2% | Jun 13, 2016 | Libksba before 1.3.4 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via unspecified... |
| CVE-2016-4574 | — | — | 2.7% | Jun 13, 2016 | Off-by-one error in the append_utf8_value function in the DN decoder (dn.c) in Libksba before 1.3.4 allows remote attack... |
| CVE-2016-4478 | — | — | 2.3% | Jun 13, 2016 | Buffer overflow in the xmlrpc_char_encode function in modules/transport/xmlrpc/xmlrpclib.c in Atheme before 7.2.7 allows... |
| CVE-2016-4414 | — | — | 2.9% | Jun 13, 2016 | The onReadyRead function in core/coreauthhandler.cpp in Quassel before 0.12.4 allows remote attackers to cause a denial ... |
| CVE-2016-4356 | — | — | 2.9% | Jun 13, 2016 | The append_utf8_value function in the DN decoder (dn.c) in Libksba before 1.3.3 allows remote attackers to cause a denia... |
| CVE-2016-4355 | — | — | 1.9% | Jun 13, 2016 | Multiple integer overflows in ber-decoder.c in Libksba before 1.3.3 allow remote attackers to cause a denial of service ... |
| CVE-2016-4354 | — | — | 1.9% | Jun 13, 2016 | ber-decoder.c in Libksba before 1.3.3 uses an incorrect integer data type, which allows remote attackers to cause a deni... |
| CVE-2016-4353 | — | — | 2.1% | Jun 13, 2016 | ber-decoder.c in Libksba before 1.3.3 does not properly handle decoder stack overflows, which allows remote attackers to... |
| CVE-2016-3698 | — | — | 3.8% | Jun 13, 2016 | libndp before 1.6, as used in NetworkManager, does not properly validate the origin of Neighbor Discovery Protocol (NDP)... |
| CVE-2016-5302 | — | — | 2.6% | Jun 13, 2016 | Citrix XenServer 7.0 before Hotfix XS70E003, when a deployment has been upgraded from an earlier release, might allow re... |
| CVE-2016-5234 | — | — | 3.0% | Jun 13, 2016 | Buffer overflow in Huawei VP9660, VP9650, and VP9630 multipoint control unit devices with software before V500R002C00SPC... |
| CVE-2016-5104 | — | — | 3.0% | Jun 13, 2016 | The socket_create function in common/socket.c in libimobiledevice and libusbmuxd allows remote attackers to bypass inten... |
| CVE-2016-4005 | — | — | 0.3% | Jun 13, 2016 | The Huawei Hilink App application before 3.19.2 for Android does not validate SSL certificates, which allows local users... |
| CVE-2016-3677 | — | — | 0.2% | Jun 13, 2016 | The Huawei Wear App application before 15.0.0.307 for Android does not validate SSL certificates, which allows local use... |
| CVE-2016-3670 | — | — | 2.3% | Jun 13, 2016 | Cross-site scripting (XSS) vulnerability in users.jsp in the Profile Search functionality in Liferay before 7.0.0 CE RC1... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now