2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-5703 | — | — | 2.3% | Jul 3, 2016 | SQL injection vulnerability in libraries/central_columns.lib.php in phpMyAdmin 4.4.x before 4.4.15.7 and 4.6.x before 4.... |
| CVE-2016-5702 | — | — | 1.7% | Jul 3, 2016 | phpMyAdmin 4.6.x before 4.6.3, when the environment lacks a PHP_SELF value, allows remote attackers to conduct cookie-at... |
| CVE-2016-5701 | — | — | 1.5% | Jul 3, 2016 | setup/frames/index.inc.php in phpMyAdmin 4.0.10.x before 4.0.10.16, 4.4.15.x before 4.4.15.7, and 4.6.x before 4.6.3 all... |
| CVE-2016-5228 | — | — | 15.1% | Jul 3, 2016 | Stack-based buffer overflow in the PlayMacro function in ObjectXMacro.ObjectXMacro in WdMacCtl.ocx in Micro Focus Rumba ... |
| CVE-2016-2082 | — | — | 0.6% | Jul 3, 2016 | Cross-site request forgery (CSRF) vulnerability in VMware vRealize Log Insight 2.x and 3.x before 3.3.2 allows remote at... |
| CVE-2016-2081 | — | — | 0.8% | Jul 3, 2016 | Cross-site scripting (XSS) vulnerability in VMware vRealize Log Insight 2.x and 3.x before 3.3.2 allows remote attackers... |
| CVE-2016-2079 | — | — | 1.1% | Jul 3, 2016 | VMware NSX Edge 6.1 before 6.1.7 and 6.2 before 6.2.3 and vCNS Edge 5.5 before 5.5.4.3, when the SSL-VPN feature is conf... |
| CVE-2016-1606 | — | — | 45.6% | Jul 3, 2016 | Multiple stack-based buffer overflows in COM objects in Micro Focus Rumba 9.4.x before 9.4 HF 13960 allow remote attacke... |
| CVE-2016-1441 | — | — | 1.1% | Jul 3, 2016 | Cisco Cloud Network Automation Provisioner (CNAP) 1.0(0) in Cisco Configuration Assistant (CCA) allows remote attackers ... |
| CVE-2016-1394 | — | — | 1.0% | Jul 3, 2016 | Cisco Firepower System Software 6.0.0 through 6.1.0 has a hardcoded account, which allows remote attackers to obtain CLI... |
| CVE-2016-4560 | — | — | 0.5% | Jul 2, 2016 | Untrusted search path vulnerability in Flexera InstallAnywhere allows local users to gain privileges via a Trojan horse ... |
| CVE-2016-3956 | HIGH | 7.5 | 6.7% | Jul 2, 2016 | The CLI in npm before 2.15.1 and 3.x before 3.8.3, as used in Node.js 0.10 before 0.10.44, 0.12 before 0.12.13, 4 before... |
| CVE-2016-2968 | — | — | 0.8% | Jul 2, 2016 | IBM Security QRadar Incident Forensics 7.2.x before 7.2.7 allows remote attackers to bypass authentication, and obtain s... |
| CVE-2016-2961 | — | — | 1.5% | Jul 2, 2016 | The integration server in IBM Integration Bus 9 before 9.0.0.6 and 10 before 10.0.0.5 and WebSphere Message Broker 8 bef... |
| CVE-2016-2883 | — | — | 0.6% | Jul 2, 2016 | Cross-site scripting (XSS) vulnerability in IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.4, and... |
| CVE-2016-2882 | — | — | 0.8% | Jul 2, 2016 | IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.4, and 3.5 before 3.5.0.2 allows remote authentica... |
| CVE-2016-2872 | — | — | 1.8% | Jul 2, 2016 | Directory traversal vulnerability in IBM Security QRadar SIEM 7.2.x before 7.2.7 and QRadar Incident Forensics 7.2.x bef... |
| CVE-2016-2870 | — | — | 1.7% | Jul 2, 2016 | Buffer overflow in the CLI on IBM WebSphere DataPower XC10 appliances 2.1 and 2.5 allows remote authenticated users to c... |
| CVE-2016-2868 | — | — | 0.9% | Jul 2, 2016 | IBM Security QRadar SIEM 7.2.x before 7.2.7 allows remote authenticated administrators to read arbitrary files via XML d... |
| CVE-2016-2867 | — | — | 0.3% | Jul 2, 2016 | IBM InfoSphere Streams before 4.0.1.2 and IBM Streams before 4.1.1.1 do not properly implement the runAsUser feature, wh... |
| CVE-2016-2861 | — | — | 1.1% | Jul 2, 2016 | IBM WebSphere eXtreme Scale 7.1.0 before 7.1.0.3, 7.1.1 before 7.1.1.1, 8.5 before 8.5.0.3, and 8.6 before 8.6.0.8 does ... |
| CVE-2016-1440 | — | — | 1.3% | Jul 2, 2016 | The proxy process on Cisco Web Security Appliance (WSA) devices through 9.1.0-070 allows remote attackers to cause a den... |
| CVE-2016-1416 | — | — | 4.5% | Jul 2, 2016 | Cisco Prime Collaboration Provisioning 10.6 SP2 (aka 10.6.0.10602) mishandles LDAP authentication, which allows remote a... |
| CVE-2016-1408 | — | — | 2.5% | Jul 2, 2016 | Cisco Prime Infrastructure 1.2 through 3.1 and Evolved Programmable Network Manager (EPNM) 1.2 and 2.0 allow remote auth... |
| CVE-2016-1289 | — | — | 6.2% | Jul 2, 2016 | The API in Cisco Prime Infrastructure 1.2 through 3.0 and Evolved Programmable Network Manager (EPNM) 1.2 allows remote ... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now