2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-1917Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4....
CVE-2016-1916Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4....
CVE-2016-1036Cross-site scripting (XSS) vulnerability in Adobe Analytics AppMeasurement for Flash Library before 4.0.1, when debugTra...
CVE-2016-4065The ConvertToPDF plugin in Foxit Reader and PhantomPDF before 7.3.4 on Windows, when the gflags app is enabled, allows r...
CVE-2016-4064Use-after-free vulnerability in the XFA forms handling functionality in Foxit Reader and PhantomPDF before 7.3.4 on Wind...
CVE-2016-4063Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to execute a...
CVE-2016-4062Foxit Reader and PhantomPDF before 7.3.4 on Windows improperly report format errors recursively, which allows remote att...
CVE-2016-4061Foxit Reader and PhantomPDF before 7.3.4 on Windows allow remote attackers to cause a denial of service (application cra...
CVE-2016-4060Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to cause a d...
CVE-2016-4059Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to execute a...
CVE-2016-1596Multiple cross-site scripting (XSS) vulnerabilities in Micro Focus Novell Service Desk before 7.2 allow remote authentic...
CVE-2016-1595LiveTime/WebObjects/LiveTime.woa/wa/DownloadAction/downloadFile in Micro Focus Novell Service Desk before 7.2 allows rem...
CVE-2016-1594Micro Focus Novell Service Desk before 7.2 allows remote authenticated users to read arbitrary attachments via a request...
CVE-2016-1593Directory traversal vulnerability in the import users feature in Micro Focus Novell Service Desk before 7.2 allows remot...
CVE-2016-3145Lexmark printers with firmware ATL before ATL.021.063, CB before CB.021.063, PP before PP.021.063, and YK before YK.021....
CVE-2016-2354The Bluetooth functionality in Lemur Vehicle Monitors BlueDriver before 2016-04-07 supports unrestricted pairing without...
CVE-2016-2306The HMI web server in Ecava IntegraXor before 5.0 build 4522 allows remote attackers to obtain sensitive cleartext infor...
CVE-2016-2305Cross-site scripting (XSS) vulnerability in Ecava IntegraXor before 5.0 build 4522 allows remote attackers to inject arb...
CVE-2016-2304Ecava IntegraXor before 5.0 build 4522 does not include the HTTPOnly flag in a Set-Cookie header for the session cookie,...
CVE-2016-2303CRLF injection vulnerability in Ecava IntegraXor before 5.0 build 4522 allows remote attackers to inject arbitrary HTTP ...
CVE-2016-2302Ecava IntegraXor before 5.0 build 4522 allows remote attackers to obtain sensitive information by reading detailed error...
CVE-2016-2301SQL injection vulnerability in Ecava IntegraXor before 5.0 build 4522 allows remote authenticated users to execute arbit...
CVE-2016-2300Ecava IntegraXor before 5.0 build 4522 allows remote attackers to bypass authentication and access unspecified web pages...
CVE-2016-2299SQL injection vulnerability in Ecava IntegraXor before 5.0 build 4522 allows remote attackers to execute arbitrary SQL c...
CVE-2016-3977Heap-based buffer overflow in util/gif2rgb.c in gif2rgb in giflib 5.1.2 allows remote attackers to cause a denial of ser...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now