2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-3075 | — | — | 7.5% | Jun 1, 2016 | Stack-based buffer overflow in the nss_dns implementation of the getnetbyname function in GNU C Library (aka glibc) befo... |
| CVE-2016-2175 | — | — | 4.8% | Jun 1, 2016 | Apache PDFBox before 1.8.12 and 2.x before 2.0.1 does not properly initialize the XML parsers, which allows context-depe... |
| CVE-2016-1234 | — | — | 5.2% | Jun 1, 2016 | Stack-based buffer overflow in the glob implementation in GNU C Library (aka glibc) before 2.24, when GLOB_ALTDIRFUNC is... |
| CVE-2016-4500 | — | — | 1.0% | Jun 1, 2016 | Moxa UC-7408 LX-Plus devices allow remote authenticated users to write to the firmware, and consequently render a device... |
| CVE-2016-0288 | — | — | 1.5% | Jun 1, 2016 | IBM Security AppScan Standard 8.7.x, 8.8.x, and 9.x before 9.0.3.2 and Security AppScan Enterprise allow remote authenti... |
| CVE-2016-4785 | — | — | 2.7% | May 31, 2016 | A vulnerability has been identified in Firmware variant PROFINET IO for EN100 Ethernet module : All versions < V1.04.01;... |
| CVE-2016-4784 | — | — | 2.7% | May 31, 2016 | A vulnerability has been identified in firmware variant PROFINET IO for EN100 Ethernet module : All versions < V1.04.01;... |
| CVE-2016-4521 | — | — | 2.5% | May 31, 2016 | Sixnet BT-5xxx and BT-6xxx M2M devices before 3.8.21 and 3.9.x before 3.9.8 have hardcoded credentials, which allows rem... |
| CVE-2016-4506 | — | — | 0.5% | May 31, 2016 | Cross-site request forgery (CSRF) vulnerability on Resource Data Management (RDM) Intuitive 650 TDB Controller devices b... |
| CVE-2016-4505 | — | — | 2.1% | May 31, 2016 | Resource Data Management (RDM) Intuitive 650 TDB Controller devices before 2.1.24 allow remote authenticated users to mo... |
| CVE-2016-4502 | — | — | 1.6% | May 31, 2016 | Environmental Systems Corporation (ESC) 8832 Data Controller 3.02 and earlier allows remote attackers to bypass intended... |
| CVE-2016-4501 | — | — | 1.7% | May 31, 2016 | Environmental Systems Corporation (ESC) 8832 Data Controller 3.02 and earlier mishandles sessions, which allows remote a... |
| CVE-2016-2295 | — | — | 1.5% | May 31, 2016 | Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, MiiNePort_E1_7080 devices with firmware 1.1.10 Build... |
| CVE-2016-2286 | — | — | 1.4% | May 31, 2016 | Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, MiiNePort_E1_7080 devices with firmware 1.1.10 Build... |
| CVE-2016-2285 | — | — | 0.6% | May 31, 2016 | Cross-site request forgery (CSRF) vulnerability on Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, M... |
| CVE-2016-4118 | — | — | 0.9% | May 30, 2016 | Untrusted search path vulnerability in the installer in Adobe Connect Add-In before 11.9.976.291 on Windows allows local... |
| CVE-2016-2311 | — | — | 1.2% | May 30, 2016 | Black Box AlertWerks ServSensor with firmware before SP473, AlertWerks ServSensor Junior with firmware before SP473, Ale... |
| CVE-2016-2309 | — | — | 0.7% | May 30, 2016 | iRZ RUH2 before 2b does not validate firmware patches, which allows remote authenticated users to modify data or cause a... |
| CVE-2016-2025 | — | — | 3.5% | May 30, 2016 | HPE Service Manager 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, and 9.41 allows remote attackers to obtain sensitive infor... |
| CVE-2016-2023 | — | — | 0.5% | May 30, 2016 | HPE RESTful Interface Tool 1.40 allows local users to obtain sensitive information via unspecified vectors. |
| CVE-2016-1999 | — | — | 6.3% | May 30, 2016 | The server in HP Release Control 9.13, 9.20, and 9.21 allows remote attackers to execute arbitrary commands via a crafte... |
| CVE-2016-0907 | — | — | 0.9% | May 30, 2016 | EMC Isilon OneFS 7.1.x and 7.2.x before 7.2.1.3 and 8.0.x before 8.0.0.1, and IsilonSD Edge OneFS 8.0.x before 8.0.0.1, ... |
| CVE-2016-1409 | — | — | 3.8% | May 29, 2016 | The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in Cisco IOS XE 2.1 through 3.17S, IOS XR 2.0.0 th... |
| CVE-2016-1404 | — | — | 1.1% | May 29, 2016 | Cisco UCS Invicta 4.3, 4.5, and 5.0.1 on Invicta appliances and Invicta Scaling System uses the same hardcoded GnuPG enc... |
| CVE-2016-1413 | — | — | 0.9% | May 28, 2016 | The web interface in Cisco Firepower Management Center 5.4.0 through 6.0.0.1 allows remote authenticated users to modify... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now