2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-1273 | — | — | 0.7% | Apr 15, 2016 | Juniper Junos OS before 13.2X51-D40, 14.x before 14.1X53-D30, and 15.x before 15.1X53-D20 on QFX5100 and QFX10002 switch... |
| CVE-2016-1271 | — | — | 0.3% | Apr 15, 2016 | Juniper Junos OS before 12.1X46-D45, 12.1X47 before 12.1X47-D30, 12.3 before 12.3R11, 12.3X48 before 12.3X48-D25, 13.2 b... |
| CVE-2016-1270 | — | — | 1.3% | Apr 15, 2016 | The rpd daemon in Juniper Junos OS before 12.1X44-D60, 12.1X46 before 12.1X46-D45, 12.1X47 before 12.1X47-D30, 12.3 befo... |
| CVE-2016-1269 | — | — | 1.9% | Apr 15, 2016 | Juniper Junos OS before 12.1X44-D60, 12.1X46 before 12.1X46-D40, 12.1X47 before 12.1X47-D30, 12.3 before 12.3R11, 12.3X4... |
| CVE-2016-1268 | — | — | 1.9% | Apr 15, 2016 | The administrative web services interface in Juniper ScreenOS before 6.3.0r21 allows remote attackers to cause a denial ... |
| CVE-2016-1267 | — | — | 0.2% | Apr 15, 2016 | Race condition in the RPC functionality in Juniper Junos OS before 12.1X44-D55, 12.1X46 before 12.1X46-D40, 12.1X47 befo... |
| CVE-2016-1264 | — | — | 1.7% | Apr 15, 2016 | Race condition in the Op command in Juniper Junos OS before 12.1X44-D55, 12.1X46 before 12.1X46-D40, 12.1X47 before 12.1... |
| CVE-2016-0889 | — | — | 3.1% | Apr 15, 2016 | An HTTP servlet in vApp Manager in EMC Unisphere for VMAX Virtual Appliance before 8.2.0 allows remote attackers to writ... |
| CVE-2016-4018 | — | — | 1.0% | Apr 14, 2016 | The Data Provisioning Agent (aka DP Agent) in SAP HANA does not properly restrict access to service functionality, which... |
| CVE-2016-4017 | — | — | 1.3% | Apr 14, 2016 | The Data Provisioning Agent (aka DP Agent) in SAP HANA allows remote attackers to cause a denial of service (process cra... |
| CVE-2016-4016 | — | — | 1.5% | Apr 14, 2016 | Cross-site scripting (XSS) vulnerability in SAP Manufacturing Integration and Intelligence (aka MII, formerly xMII) 15 a... |
| CVE-2016-4015 | — | — | 2.6% | Apr 14, 2016 | The Enqueue Server in SAP NetWeaver JAVA AS 7.1 through 7.4 allows remote attackers to cause a denial of service (proces... |
| CVE-2016-4014 | — | — | 5.3% | Apr 14, 2016 | XML external entity (XXE) vulnerability in the UDDI component in SAP NetWeaver JAVA AS 7.4 allows remote attackers to ca... |
| CVE-2016-3079 | — | — | 1.6% | Apr 14, 2016 | Multiple cross-site scripting (XSS) vulnerabilities in the Web UI in Spacewalk and Red Hat Satellite 5.7 allow remote at... |
| CVE-2016-2103 | — | — | 1.1% | Apr 14, 2016 | Multiple cross-site scripting (XSS) vulnerabilities in Red Hat Satellite 5 allow remote attackers to inject arbitrary we... |
| CVE-2016-1378 | — | — | 1.5% | Apr 14, 2016 | Cisco IOS before 15.2(2)E1 on Catalyst switches allows remote attackers to obtain potentially sensitive software-version... |
| CVE-2016-1352 | — | — | 2.2% | Apr 14, 2016 | Cisco Unified Computing System (UCS) Central Software 1.3(1b) and earlier allows remote attackers to execute arbitrary O... |
| CVE-2016-2313 | — | — | 2.6% | Apr 13, 2016 | auth_login.php in Cacti before 0.8.8g allows remote authenticated users who use web authentication to bypass intended ac... |
| CVE-2016-0787 | — | — | 2.7% | Apr 13, 2016 | The diffie_hellman_sha256 function in kex.c in libssh2 before 1.7.0 improperly truncates secrets to 128 or 256 bits, whi... |
| CVE-2016-0757 | — | — | 1.5% | Apr 13, 2016 | OpenStack Image Service (Glance) before 2015.1.3 (kilo) and 11.0.x before 11.0.2 (liberty), when show_multiple_locations... |
| CVE-2016-0739 | — | — | 2.4% | Apr 13, 2016 | libssh before 0.7.3 improperly truncates ephemeral secrets generated for the (1) diffie-hellman-group1 and (2) diffie-he... |
| CVE-2016-4009 | — | — | 7.9% | Apr 13, 2016 | Integer overflow in the ImagingResampleHorizontal function in libImaging/Resample.c in Pillow before 3.1.1 allows remote... |
| CVE-2016-3982 | — | — | 4.0% | Apr 13, 2016 | Off-by-one error in the bmp_rle4_fread function in pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a... |
| CVE-2016-3981 | — | — | 4.4% | Apr 13, 2016 | Heap-based buffer overflow in the bmp_read_rows function in pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers t... |
| CVE-2016-3686 | — | — | 1.5% | Apr 13, 2016 | The Single Sign-On (SSO) feature in F5 BIG-IP APM 11.x before 11.6.0 HF6 and BIG-IP Edge Gateway 11.0.0 through 11.3.0 m... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now