2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-2309 | — | — | 0.7% | May 30, 2016 | iRZ RUH2 before 2b does not validate firmware patches, which allows remote authenticated users to modify data or cause a... |
| CVE-2016-2025 | — | — | 3.5% | May 30, 2016 | HPE Service Manager 9.30, 9.31, 9.32, 9.33, 9.34, 9.35, 9.40, and 9.41 allows remote attackers to obtain sensitive infor... |
| CVE-2016-2023 | — | — | 0.5% | May 30, 2016 | HPE RESTful Interface Tool 1.40 allows local users to obtain sensitive information via unspecified vectors. |
| CVE-2016-1999 | — | — | 6.3% | May 30, 2016 | The server in HP Release Control 9.13, 9.20, and 9.21 allows remote attackers to execute arbitrary commands via a crafte... |
| CVE-2016-0907 | — | — | 0.9% | May 30, 2016 | EMC Isilon OneFS 7.1.x and 7.2.x before 7.2.1.3 and 8.0.x before 8.0.0.1, and IsilonSD Edge OneFS 8.0.x before 8.0.0.1, ... |
| CVE-2016-1409 | — | — | 3.8% | May 29, 2016 | The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in Cisco IOS XE 2.1 through 3.17S, IOS XR 2.0.0 th... |
| CVE-2016-1404 | — | — | 1.1% | May 29, 2016 | Cisco UCS Invicta 4.3, 4.5, and 5.0.1 on Invicta appliances and Invicta Scaling System uses the same hardcoded GnuPG enc... |
| CVE-2016-1413 | — | — | 0.9% | May 28, 2016 | The web interface in Cisco Firepower Management Center 5.4.0 through 6.0.0.1 allows remote authenticated users to modify... |
| CVE-2016-1410 | — | — | 2.3% | May 28, 2016 | Cisco WebEx Meeting Center Original Release Base allows remote attackers to obtain sensitive information about username ... |
| CVE-2016-1379 | — | — | 1.2% | May 28, 2016 | Cisco Adaptive Security Appliance (ASA) Software 9.0 through 9.5.1 mishandles IPsec error processing, which allows remot... |
| CVE-2016-3681 | — | — | 0.7% | May 26, 2016 | Buffer overflow in the Wi-Fi driver in Huawei Mate 8 NXT-AL before NXT-AL10C00B182, NXT-CL before NXT-CL00C92B182, NXT-D... |
| CVE-2016-3680 | — | — | 0.7% | May 26, 2016 | Buffer overflow in the Wi-Fi driver in Huawei Mate 8 NXT-AL before NXT-AL10C00B182, NXT-CL before NXT-CL00C92B182, NXT-D... |
| CVE-2016-0718 | CRITICAL | 9.8 | 13.3% | May 26, 2016 | Expat allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via a m... |
| CVE-2016-1385 | — | — | 1.2% | May 26, 2016 | The XML parser in Cisco Adaptive Security Appliance (ASA) Software through 9.5.2 allows remote authenticated users to ca... |
| CVE-2016-4792 | — | — | 2.1% | May 26, 2016 | Pulse Connect Secure (PCS) 8.2 before 8.2r1 allows remote attackers to disclose sign in pages via unspecified vectors. |
| CVE-2016-4791 | — | — | 2.2% | May 26, 2016 | The administrative user interface in Pulse Connect Secure (PCS) 8.2 before 8.2r1, 8.1 before 8.1r2, 8.0 before 8.0r9, an... |
| CVE-2016-4790 | — | — | 1.0% | May 26, 2016 | Cross-site scripting (XSS) vulnerability in the administrative user interface in Pulse Connect Secure (PCS) 8.2 before 8... |
| CVE-2016-4789 | — | — | 1.1% | May 26, 2016 | Cross-site scripting (XSS) vulnerability in the system configuration section in the administrative user interface in Pul... |
| CVE-2016-4788 | — | — | 1.5% | May 26, 2016 | Pulse Connect Secure (PCS) 8.2 before 8.2r1, 8.1 before 8.1r2, 8.0 before 8.0r10, and 7.4 before 7.4r13.4 allow remote a... |
| CVE-2016-4787 | — | — | 2.5% | May 26, 2016 | Pulse Connect Secure (PCS) 8.2 before 8.2r1, 8.1 before 8.1r2, 8.0 before 8.0r10, and 7.4 before 7.4r13.4 allow remote a... |
| CVE-2016-4786 | — | — | 2.1% | May 26, 2016 | Pulse Connect Secure (PCS) 8.2 before 8.2r1, 8.1 before 8.1r3, 8.0 before 8.0r11, and 7.4 before 7.4r13.4 allow remote a... |
| CVE-2016-4021 | — | — | 1.8% | May 26, 2016 | The read_binary function in buffer.c in pgpdump before 0.30 allows context-dependent attackers to cause a denial of serv... |
| CVE-2016-2784 | — | — | 2.5% | May 26, 2016 | CMS Made Simple 2.x before 2.1.3 and 1.x before 1.12.2, when Smarty Cache is activated, allow remote attackers to conduc... |
| CVE-2016-4575 | — | — | 0.7% | May 25, 2016 | Cross-site scripting (XSS) vulnerability in the email APP in Huawei PLK smartphones with software AL10C00 before AL10C00... |
| CVE-2016-4020 | MEDIUM | 6.5 | 0.4% | May 25, 2016 | The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local ... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now