2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-2211The AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS...
CVE-2016-2210Buffer overflow in Dec2LHA.dll in the AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec...
CVE-2016-2209Buffer overflow in Dec2SS.dll in the AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec ...
CVE-2016-2207The AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS...
CVE-2016-5360HAproxy 1.6.x before 1.6.6, when a deny comes from a reqdeny rule, allows remote attackers to cause a denial of service ...
CVE-2016-5301The parse_chunk_header function in libtorrent before 1.1.1 allows remote attackers to cause a denial of service (crash) ...
CVE-2016-5020F5 BIG-IP before 12.0.0 HF3 allows remote authenticated users to modify the account configuration of users with the Reso...
CVE-2016-4971HIGH8.8GNU wget before 1.18 allows remote servers to write to arbitrary files by redirecting a request from HTTP to a crafted F...
CVE-2016-4803CRLF injection vulnerability in the send email functionality in dotCMS before 3.3.2 allows remote attackers to inject ar...
CVE-2016-4472HIGH8.1The overflow protection in Expat is removed by compilers with certain optimization settings, which allows remote attacke...
CVE-2016-4309HIGH7.5Session fixation vulnerability in Symphony CMS 2.6.7, when session.use_only_cookies is disabled, allows remote attackers...
CVE-2016-3189MEDIUM6.5Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash)...
CVE-2016-5840hotfix_upload.cgi in Trend Micro Deep Discovery Inspector (DDI) 3.7, 3.8 SP1 (3.81), and 3.8 SP2 (3.82) allows remote ad...
CVE-2016-5729HIGH8.2Lenovo BIOS EFI Driver allows local administrators to execute arbitrary code with System Management Mode (SMM) privilege...
CVE-2016-5368Memory leak in Huawei AR3200 before V200R007C00SPC900 allows remote attackers to cause a denial of service (memory consu...
CVE-2016-5249Lenovo Solution Center (LSC) before 3.3.003 allows local users to execute arbitrary code with LocalSystem privileges via...
CVE-2016-5248The StopProxy command in LSC.Services.SystemService in Lenovo Solution Center before 3.3.003 allows local users to termi...
CVE-2016-5232Buffer overflow in Huawei Mate8 NXT-AL before NXT-AL10C00B182, NXT-CL before NXT-CL00C92B182, NXT-DL before NXT-DL00C17B...
CVE-2016-5231Huawei Mate8 NXT-AL before NXT-AL10C00B182, NXT-CL before NXT-CL00C92B182, NXT-DL before NXT-DL00C17B182, and NXT-TL bef...
CVE-2016-5230Huawei Mate8 NXT-AL before NXT-AL10C00B182, NXT-CL before NXT-CL00C92B182, NXT-DL before NXT-DL00C17B182, and NXT-TL bef...
CVE-2016-4474The image build process for the overcloud images in Red Hat OpenStack Platform 8.0 (Liberty) director and Red Hat Enterp...
CVE-2016-4086Huawei HiSuite (In China) before 4.0.4.301 and (Out of China) before 4.0.4.204_ove allows remote attackers to install ar...
CVE-2016-4057Huawei FusionCompute before V100R005C10SPC700 allows remote authenticated users to cause a denial of service (resource c...
CVE-2016-2141CRITICAL9.8It was found that JGroups did not require necessary headers for encrypt and auth protocols from new nodes joining the cl...
CVE-2016-0349IBM Business Process Manager 8.5.6 through 8.5.6.2 and 8.5.7 before 8.5.7.CF201606 allows remote authenticated users to ...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now