2016 CVE Vulnerabilities

10,648 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-0468——Unspecified vulnerability in the Oracle Business Intelligence Enterprise Edition component in Oracle Fusion Middleware 1...
CVE-2016-0408——Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53 through ...
CVE-2016-0407——Unspecified vulnerability in the PeopleSoft Enterprise HCM component in Oracle PeopleSoft Products 9.1 and 9.2 allows re...
CVE-2016-2202——The Inventory Solution component in the Management Agent in the client in Symantec Altiris IT Management Suite (ITMS) th...
CVE-2016-2003——HPE P9000 Command View Advanced Edition Software (CVAE) 7.x and 8.x before 8.4.0-00 and XP7 CVAE 7.x and 8.x before 8.4....
CVE-2016-2002——The validateAdminConfig handler in the Analytics Management Console in HPE Vertica 7.0.x before 7.0.2.12, 7.1.x before 7...
CVE-2016-1384——The NTP implementation in Cisco IOS 15.1 and 15.5 and IOS XE 3.2 through 3.17 allows remote attackers to modify the syst...
CVE-2016-0891——Multiple cross-site request forgery (CSRF) vulnerabilities in administrative pages in EMC ViPR SRM before 3.7 allow remo...
CVE-2016-3628——Buffer overflow in tibemsd in the server in TIBCO Enterprise Message Service (EMS) before 8.3.0 and EMS Appliance before...
CVE-2016-2390——The FwdState::connectedToPeer method in FwdState.cc in Squid before 3.5.14 and 4.0.x before 4.0.6 does not properly hand...
CVE-2016-0741——slapd/connection.c in 389 Directory Server (formerly Fedora Directory Server) 1.3.4.x before 1.3.4.7 allows remote attac...
CVE-2016-4040——SQL injection vulnerability in the Workflow Screen in dotCMS before 3.3.2 allows remote administrators to execute arbitr...
CVE-2016-3960——Integer overflow in the x86 shadow pagetable code in Xen allows local guest OS users to cause a denial of service (host ...
CVE-2016-3688——SQL injection vulnerability in dotCMS before 3.5 allows remote administrators to execute arbitrary SQL commands via the ...
CVE-2016-3186——Buffer overflow in the readextension function in gif2tiff.c in LibTIFF 4.0.6 allows remote attackers to cause a denial o...
CVE-2016-3972——Directory traversal vulnerability in the dotTailLogServlet in dotCMS before 3.5.1 allows remote authenticated administra...
CVE-2016-3971——Cross-site scripting (XSS) vulnerability in lucene_search.jsp in dotCMS before 3.5.1 allows remote attackers to inject a...
CVE-2016-3941——Buffer overflow in the AStreamPeekStream function in input/stream.c in VideoLAN VLC media player before 2.2.0 allows rem...
CVE-2016-4036——The quagga package before 0.99.23-2.6.1 in openSUSE and SUSE Linux Enterprise Server 11 SP 1 uses weak permissions for /...
CVE-2016-3950——Huawei AR3200 routers with software before V200R006C10SPC300 allow remote authenticated users to cause a denial of servi...
CVE-2016-3071——Libreswan 3.16 might allow remote attackers to cause a denial of service (daemon restart) via an IKEv2 aes_xcbc transfor...
CVE-2016-1659——Multiple unspecified vulnerabilities in Google Chrome before 50.0.2661.75 allow attackers to cause a denial of service o...
CVE-2016-1658——The Extensions subsystem in Google Chrome before 50.0.2661.75 incorrectly relies on GetOrigin method calls for origin co...
CVE-2016-1657——The WebContentsImpl::FocusLocationBarByDefault function in content/browser/web_contents/web_contents_impl.cc in Google C...
CVE-2016-1656——The download implementation in Google Chrome before 50.0.2661.75 on Android allows remote attackers to bypass intended p...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now