2016 CVE Vulnerabilities

10,648 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-3644——The AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS...
CVE-2016-2211——The AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS...
CVE-2016-2210——Buffer overflow in Dec2LHA.dll in the AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec...
CVE-2016-2209——Buffer overflow in Dec2SS.dll in the AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec ...
CVE-2016-2207——The AntiVirus Decomposer engine in Symantec Advanced Threat Protection (ATP); Symantec Data Center Security:Server (SDCS...
CVE-2016-5360——HAproxy 1.6.x before 1.6.6, when a deny comes from a reqdeny rule, allows remote attackers to cause a denial of service ...
CVE-2016-5301——The parse_chunk_header function in libtorrent before 1.1.1 allows remote attackers to cause a denial of service (crash) ...
CVE-2016-5020——F5 BIG-IP before 12.0.0 HF3 allows remote authenticated users to modify the account configuration of users with the Reso...
CVE-2016-4971HIGH8.8GNU wget before 1.18 allows remote servers to write to arbitrary files by redirecting a request from HTTP to a crafted F...
CVE-2016-4803——CRLF injection vulnerability in the send email functionality in dotCMS before 3.3.2 allows remote attackers to inject ar...
CVE-2016-4472HIGH8.1The overflow protection in Expat is removed by compilers with certain optimization settings, which allows remote attacke...
CVE-2016-4309HIGH7.5Session fixation vulnerability in Symphony CMS 2.6.7, when session.use_only_cookies is disabled, allows remote attackers...
CVE-2016-3189MEDIUM6.5Use-after-free vulnerability in bzip2recover in bzip2 1.0.6 allows remote attackers to cause a denial of service (crash)...
CVE-2016-5840——hotfix_upload.cgi in Trend Micro Deep Discovery Inspector (DDI) 3.7, 3.8 SP1 (3.81), and 3.8 SP2 (3.82) allows remote ad...
CVE-2016-5729HIGH8.2Lenovo BIOS EFI Driver allows local administrators to execute arbitrary code with System Management Mode (SMM) privilege...
CVE-2016-5368——Memory leak in Huawei AR3200 before V200R007C00SPC900 allows remote attackers to cause a denial of service (memory consu...
CVE-2016-5249——Lenovo Solution Center (LSC) before 3.3.003 allows local users to execute arbitrary code with LocalSystem privileges via...
CVE-2016-5248——The StopProxy command in LSC.Services.SystemService in Lenovo Solution Center before 3.3.003 allows local users to termi...
CVE-2016-5232——Buffer overflow in Huawei Mate8 NXT-AL before NXT-AL10C00B182, NXT-CL before NXT-CL00C92B182, NXT-DL before NXT-DL00C17B...
CVE-2016-5231——Huawei Mate8 NXT-AL before NXT-AL10C00B182, NXT-CL before NXT-CL00C92B182, NXT-DL before NXT-DL00C17B182, and NXT-TL bef...
CVE-2016-5230——Huawei Mate8 NXT-AL before NXT-AL10C00B182, NXT-CL before NXT-CL00C92B182, NXT-DL before NXT-DL00C17B182, and NXT-TL bef...
CVE-2016-4474——The image build process for the overcloud images in Red Hat OpenStack Platform 8.0 (Liberty) director and Red Hat Enterp...
CVE-2016-4086——Huawei HiSuite (In China) before 4.0.4.301 and (Out of China) before 4.0.4.204_ove allows remote attackers to install ar...
CVE-2016-4057——Huawei FusionCompute before V100R005C10SPC700 allows remote authenticated users to cause a denial of service (resource c...
CVE-2016-2141CRITICAL9.8It was found that JGroups did not require necessary headers for encrypt and auth protocols from new nodes joining the cl...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now