2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-0468 | — | — | 0.8% | Apr 21, 2016 | Unspecified vulnerability in the Oracle Business Intelligence Enterprise Edition component in Oracle Fusion Middleware 1... |
| CVE-2016-0408 | — | — | 1.0% | Apr 21, 2016 | Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53 through ... |
| CVE-2016-0407 | — | — | 1.5% | Apr 21, 2016 | Unspecified vulnerability in the PeopleSoft Enterprise HCM component in Oracle PeopleSoft Products 9.1 and 9.2 allows re... |
| CVE-2016-2202 | — | — | 0.3% | Apr 20, 2016 | The Inventory Solution component in the Management Agent in the client in Symantec Altiris IT Management Suite (ITMS) th... |
| CVE-2016-2003 | — | — | 4.5% | Apr 20, 2016 | HPE P9000 Command View Advanced Edition Software (CVAE) 7.x and 8.x before 8.4.0-00 and XP7 CVAE 7.x and 8.x before 8.4.... |
| CVE-2016-2002 | — | — | 3.1% | Apr 20, 2016 | The validateAdminConfig handler in the Analytics Management Console in HPE Vertica 7.0.x before 7.0.2.12, 7.1.x before 7... |
| CVE-2016-1384 | — | — | 2.5% | Apr 20, 2016 | The NTP implementation in Cisco IOS 15.1 and 15.5 and IOS XE 3.2 through 3.17 allows remote attackers to modify the syst... |
| CVE-2016-0891 | — | — | 3.6% | Apr 20, 2016 | Multiple cross-site request forgery (CSRF) vulnerabilities in administrative pages in EMC ViPR SRM before 3.7 allow remo... |
| CVE-2016-3628 | — | — | 2.2% | Apr 20, 2016 | Buffer overflow in tibemsd in the server in TIBCO Enterprise Message Service (EMS) before 8.3.0 and EMS Appliance before... |
| CVE-2016-2390 | — | — | 25.6% | Apr 19, 2016 | The FwdState::connectedToPeer method in FwdState.cc in Squid before 3.5.14 and 4.0.x before 4.0.6 does not properly hand... |
| CVE-2016-0741 | — | — | 4.0% | Apr 19, 2016 | slapd/connection.c in 389 Directory Server (formerly Fedora Directory Server) 1.3.4.x before 1.3.4.7 allows remote attac... |
| CVE-2016-4040 | — | — | 1.3% | Apr 19, 2016 | SQL injection vulnerability in the Workflow Screen in dotCMS before 3.3.2 allows remote administrators to execute arbitr... |
| CVE-2016-3960 | — | — | 0.5% | Apr 19, 2016 | Integer overflow in the x86 shadow pagetable code in Xen allows local guest OS users to cause a denial of service (host ... |
| CVE-2016-3688 | — | — | 1.6% | Apr 19, 2016 | SQL injection vulnerability in dotCMS before 3.5 allows remote administrators to execute arbitrary SQL commands via the ... |
| CVE-2016-3186 | — | — | 2.5% | Apr 19, 2016 | Buffer overflow in the readextension function in gif2tiff.c in LibTIFF 4.0.6 allows remote attackers to cause a denial o... |
| CVE-2016-3972 | — | — | 1.5% | Apr 18, 2016 | Directory traversal vulnerability in the dotTailLogServlet in dotCMS before 3.5.1 allows remote authenticated administra... |
| CVE-2016-3971 | — | — | 0.7% | Apr 18, 2016 | Cross-site scripting (XSS) vulnerability in lucene_search.jsp in dotCMS before 3.5.1 allows remote attackers to inject a... |
| CVE-2016-3941 | — | — | 1.3% | Apr 18, 2016 | Buffer overflow in the AStreamPeekStream function in input/stream.c in VideoLAN VLC media player before 2.2.0 allows rem... |
| CVE-2016-4036 | — | — | 0.4% | Apr 18, 2016 | The quagga package before 0.99.23-2.6.1 in openSUSE and SUSE Linux Enterprise Server 11 SP 1 uses weak permissions for /... |
| CVE-2016-3950 | — | — | 1.4% | Apr 18, 2016 | Huawei AR3200 routers with software before V200R006C10SPC300 allow remote authenticated users to cause a denial of servi... |
| CVE-2016-3071 | — | — | 2.6% | Apr 18, 2016 | Libreswan 3.16 might allow remote attackers to cause a denial of service (daemon restart) via an IKEv2 aes_xcbc transfor... |
| CVE-2016-1659 | — | — | 1.5% | Apr 18, 2016 | Multiple unspecified vulnerabilities in Google Chrome before 50.0.2661.75 allow attackers to cause a denial of service o... |
| CVE-2016-1658 | — | — | 1.4% | Apr 18, 2016 | The Extensions subsystem in Google Chrome before 50.0.2661.75 incorrectly relies on GetOrigin method calls for origin co... |
| CVE-2016-1657 | — | — | 1.4% | Apr 18, 2016 | The WebContentsImpl::FocusLocationBarByDefault function in content/browser/web_contents/web_contents_impl.cc in Google C... |
| CVE-2016-1656 | — | — | 1.5% | Apr 18, 2016 | The download implementation in Google Chrome before 50.0.2661.75 on Android allows remote attackers to bypass intended p... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now