2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-0400 | — | — | 2.1% | Jul 2, 2016 | CRLF injection vulnerability in IBM WebSphere eXtreme Scale 7.1.0 before 7.1.0.3, 7.1.1 before 7.1.1.1, 8.5 before 8.5.0... |
| CVE-2016-0399 | — | — | 0.6% | Jul 2, 2016 | Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.1 through 7.1.1.13, 7.5 before 7.5.0.9 IFIX007... |
| CVE-2016-0398 | — | — | 1.2% | Jul 2, 2016 | IBM Cognos Analytics (CA) 11.0 before 11.0.2 allows remote attackers to conduct content-spoofing attacks via a crafted U... |
| CVE-2016-0391 | — | — | 1.3% | Jul 2, 2016 | The IBM Watson Developer Cloud services on Bluemix platforms do not properly generate random numbers for service-instanc... |
| CVE-2016-0387 | — | — | 0.6% | Jul 2, 2016 | Cross-site scripting (XSS) vulnerability in IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.4, and... |
| CVE-2016-0386 | — | — | 0.5% | Jul 2, 2016 | Cross-site request forgery (CSRF) vulnerability in IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2... |
| CVE-2016-0375 | — | — | 2.3% | Jul 1, 2016 | JMS Client in IBM MessageSight 1.1.x through 1.1.0.1, 1.2.x through 1.2.0.3, and 2.0.x through 2.0.0.0 allows remote aut... |
| CVE-2016-0374 | — | — | 1.2% | Jul 1, 2016 | The builder tools in IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.4, and 3.5 before 3.5.0.2 all... |
| CVE-2016-0365 | — | — | 1.2% | Jul 1, 2016 | IBM UrbanCode Deploy 6.0.x before 6.0.1.13, 6.1.x before 6.1.3.3, and 6.2.x before 6.2.1.1, when agent-relay Codestation... |
| CVE-2016-0364 | — | — | 0.9% | Jul 1, 2016 | IBM UrbanCode Deploy 6.0.x before 6.0.1.13, 6.1.x before 6.1.3.3, and 6.2.x before 6.2.1.1 does not properly implement a... |
| CVE-2016-0362 | — | — | 0.9% | Jul 1, 2016 | IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.4, and 3.5 before 3.5.0.2 allows remote authentica... |
| CVE-2016-5307 | — | — | 2.9% | Jun 30, 2016 | Directory traversal vulnerability in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 allows remote authe... |
| CVE-2016-5306 | — | — | 2.1% | Jun 30, 2016 | Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 does not properly implement the HSTS protection mechanis... |
| CVE-2016-5305 | — | — | 1.2% | Jun 30, 2016 | Multiple cross-site scripting (XSS) vulnerabilities in management scripts in Symantec Endpoint Protection Manager (SEPM)... |
| CVE-2016-5304 | — | — | 4.1% | Jun 30, 2016 | Open redirect vulnerability in a report-routing component in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6... |
| CVE-2016-3653 | — | — | 1.3% | Jun 30, 2016 | Multiple cross-site request forgery (CSRF) vulnerabilities in management scripts in Symantec Endpoint Protection Manager... |
| CVE-2016-3652 | — | — | 2.6% | Jun 30, 2016 | Multiple cross-site scripting (XSS) vulnerabilities in management scripts in Symantec Endpoint Protection Manager (SEPM)... |
| CVE-2016-3651 | — | — | 1.8% | Jun 30, 2016 | Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 allows remote authenticated users to discover the PHP JS... |
| CVE-2016-3650 | — | — | 1.5% | Jun 30, 2016 | Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 allows remote authenticated users to discover credential... |
| CVE-2016-3649 | — | — | 1.7% | Jun 30, 2016 | Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 allows remote authenticated administrators to enumerate ... |
| CVE-2016-3648 | — | — | 2.3% | Jun 30, 2016 | Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 allows remote authenticated users to bypass the Authenti... |
| CVE-2016-3647 | — | — | 1.9% | Jun 30, 2016 | Symantec Endpoint Protection Manager (SEPM) 12.1 before RU6 MP5 allows remote authenticated users to conduct server-side... |
| CVE-2016-3646 | — | — | 17.7% | Jun 30, 2016 | The AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS... |
| CVE-2016-3645 | — | — | 24.6% | Jun 30, 2016 | Integer overflow in the TNEF unpacker in the AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); S... |
| CVE-2016-3644 | — | — | 17.7% | Jun 30, 2016 | The AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now