2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-4054 | — | — | 74.0% | Apr 25, 2016 | Buffer overflow in Squid 3.x before 3.5.17 and 4.x before 4.0.9 allows remote attackers to execute arbitrary code via cr... |
| CVE-2016-4053 | — | — | 11.4% | Apr 25, 2016 | Squid 3.x before 3.5.17 and 4.x before 4.0.9 allow remote attackers to obtain sensitive stack layout information via cra... |
| CVE-2016-4052 | — | — | 10.2% | Apr 25, 2016 | Multiple stack-based buffer overflows in Squid 3.x before 3.5.17 and 4.x before 4.0.9 allow remote HTTP servers to cause... |
| CVE-2016-4051 | — | — | 16.8% | Apr 25, 2016 | Buffer overflow in cachemgr.cgi in Squid 2.x, 3.x before 3.5.17, and 4.x before 4.0.9 might allow remote attackers to ca... |
| CVE-2016-4085 | — | — | 3.0% | Apr 25, 2016 | Stack-based buffer overflow in epan/dissectors/packet-ncp2222.inc in the NCP dissector in Wireshark 1.12.x before 1.12.1... |
| CVE-2016-4084 | — | — | 1.8% | Apr 25, 2016 | Integer signedness error in epan/dissectors/packet-mswsp.c in the MS-WSP dissector in Wireshark 2.0.x before 2.0.3 allow... |
| CVE-2016-4083 | — | — | 1.8% | Apr 25, 2016 | epan/dissectors/packet-mswsp.c in the MS-WSP dissector in Wireshark 2.0.x before 2.0.3 does not ensure that data is avai... |
| CVE-2016-4082 | — | — | 2.4% | Apr 25, 2016 | epan/dissectors/packet-gsm_cbch.c in the GSM CBCH dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 us... |
| CVE-2016-4081 | — | — | 2.0% | Apr 25, 2016 | epan/dissectors/packet-iax2.c in the IAX2 dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 uses an in... |
| CVE-2016-4080 | — | — | 2.1% | Apr 25, 2016 | epan/dissectors/packet-pktc.c in the PKTC dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 misparses ... |
| CVE-2016-4079 | — | — | 2.2% | Apr 25, 2016 | epan/dissectors/packet-pktc.c in the PKTC dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not v... |
| CVE-2016-4078 | — | — | 2.1% | Apr 25, 2016 | The IEEE 802.11 dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not properly restrict element l... |
| CVE-2016-4077 | — | — | 2.0% | Apr 25, 2016 | epan/reassemble.c in TShark in Wireshark 2.0.x before 2.0.3 relies on incorrect special-case handling of truncated Tvb d... |
| CVE-2016-4076 | — | — | 1.7% | Apr 25, 2016 | epan/dissectors/packet-ncp2222.inc in the NCP dissector in Wireshark 2.0.x before 2.0.3 does not properly initialize mem... |
| CVE-2016-4006 | — | — | 2.3% | Apr 25, 2016 | epan/proto.c in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 does not limit the protocol-tree depth, which all... |
| CVE-2016-2115 | — | — | 10.3% | Apr 25, 2016 | Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not require SMB signing within a DCERPC... |
| CVE-2016-2114 | — | — | 2.6% | Apr 25, 2016 | The SMB1 protocol implementation in Samba 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not recogni... |
| CVE-2016-2113 | — | — | 2.6% | Apr 25, 2016 | Samba 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not verify X.509 certificates from TLS servers,... |
| CVE-2016-2112 | — | — | 9.4% | Apr 25, 2016 | The bundled LDAP client library in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not ... |
| CVE-2016-2111 | — | — | 2.9% | Apr 25, 2016 | The NETLOGON service in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2, when a domain contr... |
| CVE-2016-2110 | — | — | 8.3% | Apr 25, 2016 | The NTLMSSP authentication implementation in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2... |
| CVE-2016-3126 | — | — | 1.0% | Apr 22, 2016 | Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.... |
| CVE-2016-2204 | — | — | 0.7% | Apr 22, 2016 | The management console on Symantec Messaging Gateway (SMG) Appliance devices before 10.6.1 allows local users to obtain ... |
| CVE-2016-2203 | — | — | 7.1% | Apr 22, 2016 | The management console on Symantec Messaging Gateway (SMG) Appliance devices before 10.6.1 allows local users to discove... |
| CVE-2016-1918 | — | — | 1.0% | Apr 22, 2016 | Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now