2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-1000282 | — | — | 13.4% | Feb 5, 2019 | Haraka version 2.8.8 and earlier comes with a plugin for processing attachments for zip files. Versions 2.8.8 and earlie... |
| CVE-2016-1000276 | — | — | — | Feb 4, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-1000010. Reason: This candidate is a duplicate... |
| CVE-2016-1000271 | — | — | 2.0% | Feb 4, 2019 | Joomla extension DT Register version before 3.1.12 (Joomla 3.x) / 2.8.18 (Joomla 2.5) contains an SQL injection in "/ind... |
| CVE-2016-10741 | — | — | 0.3% | Feb 1, 2019 | In the Linux kernel before 4.9.3, fs/xfs/xfs_aops.c allows local users to cause a denial of service (system crash) becau... |
| CVE-2016-10740 | — | — | 1.1% | Jan 29, 2019 | Various resources in Atlassian Crowd before version 2.10.1 allow remote attackers with administration rights to learn th... |
| CVE-2016-10739 | — | — | 0.5% | Jan 21, 2019 | In the GNU C Library (aka glibc or libc6) through 2.28, the getaddrinfo function would successfully parse a string that ... |
| CVE-2016-9778 | HIGH | 7.5 | 6.8% | Jan 16, 2019 | An error in handling certain queries can cause an assertion failure when a server is using the nxdomain-redirect feature... |
| CVE-2016-10738 | — | — | 0.7% | Jan 16, 2019 | Zenbership v107 has CSRF via admin/cp-functions/event-add.php. |
| CVE-2016-10737 | — | — | 0.6% | Jan 16, 2019 | Serendipity 2.0.4 has XSS via the serendipity_admin.php serendipity[body] parameter. |
| CVE-2016-7576 | — | — | 0.9% | Jan 11, 2019 | In iOS before 9.3.3, a memory corruption issue existed in the kernel. This issue was addressed through improved memory h... |
| CVE-2016-4644 | — | — | 1.3% | Jan 11, 2019 | In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a downgrade is... |
| CVE-2016-4643 | — | — | 1.2% | Jan 11, 2019 | In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a validation i... |
| CVE-2016-4642 | — | — | 1.3% | Jan 11, 2019 | In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, proxy authenti... |
| CVE-2016-10736 | — | — | 1.1% | Jan 9, 2019 | The "Social Pug - Easy Social Share Buttons" plugin before 1.2.6 for WordPress allows XSS via the wp-admin/admin.php?pag... |
| CVE-2016-9651 | — | — | 11.2% | Jan 9, 2019 | A missing check for whether a property of a JS object is private in V8 in Google Chrome prior to 55.0.2883.75 allowed a ... |
| CVE-2016-10403 | — | — | 0.8% | Jan 9, 2019 | Insufficient data validation on image data in PDFium in Google Chrome prior to 51.0.2704.63 allowed a remote attacker to... |
| CVE-2016-10735 | — | — | 4.0% | Jan 9, 2019 | In Bootstrap 3.x before 3.4.0 and 4.x-beta before 4.0.0-beta.2, XSS is possible in the data-target attribute, a differen... |
| CVE-2016-10502 | — | — | 1.5% | Dec 10, 2018 | While generating trusted application id, An integer overflow can occur giving the trusted application an invalid identit... |
| CVE-2016-8489 | — | — | — | Dec 10, 2018 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-10242. Reason: This candidate is a reservation... |
| CVE-2016-9749 | MEDIUM | 4 | 0.3% | Nov 9, 2018 | IBM Campaign 9.1.0, 9.1.2, 10.0, and 10.1 could allow an authenticated user with access to the local network to bypass s... |
| CVE-2016-2123 | HIGH | 8.8 | 6.2% | Nov 1, 2018 | A flaw was found in samba versions 4.0.0 to 4.5.2. The Samba routine ndr_pull_dnsp_name contains an integer wrap problem... |
| CVE-2016-2120 | HIGH | 7.5 | 2.0% | Nov 1, 2018 | An issue has been found in PowerDNS Authoritative Server versions up to and including 3.4.10, 4.0.1 allowing an authoriz... |
| CVE-2016-6328 | HIGH | 8.1 | 1.5% | Oct 31, 2018 | A vulnerability was found in libexif. An integer overflow when parsing the MNOTE entry data of the input file. This can ... |
| CVE-2016-2125 | MEDIUM | 6.5 | 9.3% | Oct 31, 2018 | It was found that Samba before versions 4.5.3, 4.4.8, 4.3.13 always requested forwardable tickets when using Kerberos au... |
| CVE-2016-6343 | MEDIUM | 6.1 | 1.7% | Oct 31, 2018 | JBoss BPM Suite 6 is vulnerable to a reflected XSS via dashbuilder. Remote attackers can entice authenticated users that... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now