2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-0902 | — | — | 2.1% | May 7, 2016 | CRLF injection vulnerability in EMC RSA Authentication Manager before 8.1 SP1 P14 allows remote attackers to inject arbi... |
| CVE-2016-0901 | — | — | 1.6% | May 7, 2016 | Cross-site scripting (XSS) vulnerability in EMC RSA Authentication Manager before 8.1 SP1 P14 allows remote attackers to... |
| CVE-2016-0900 | — | — | 1.6% | May 7, 2016 | Cross-site scripting (XSS) vulnerability in EMC RSA Authentication Manager before 8.1 SP1 P14 allows remote attackers to... |
| CVE-2016-4422 | CRITICAL | 9.8 | 1.8% | May 6, 2016 | The pam_sm_authenticate function in pam_sshauth.c in libpam-sshauth might allow context-dependent attackers to bypass au... |
| CVE-2016-4074 | HIGH | 7.5 | 5.3% | May 6, 2016 | The jv_dump_term function in jq 1.5 allows remote attackers to cause a denial of service (stack consumption and applicat... |
| CVE-2016-2094 | — | — | 2.6% | May 6, 2016 | The HTTPS NIO Connector allows remote attackers to cause a denial of service (thread consumption) by opening a socket an... |
| CVE-2016-2062 | HIGH | 7.8 | 0.2% | May 5, 2016 | The adreno_perfcounter_query_group function in drivers/gpu/msm/adreno_perfcounter.c in the Adreno GPU driver for the Lin... |
| CVE-2016-2059 | HIGH | 7 | 0.2% | May 5, 2016 | The msm_ipc_router_bind_control_port function in net/ipc_router/ipc_router_core.c in the IPC router kernel module for th... |
| CVE-2016-1392 | — | — | 1.0% | May 5, 2016 | Open redirect vulnerability in Cisco Prime Collaboration Assurance Software 10.5 through 11.0 allows remote attackers to... |
| CVE-2016-1387 | — | — | 1.8% | May 5, 2016 | The XML API in TelePresence Codec (TC) 7.2.0, 7.2.1, 7.3.0, 7.3.1, 7.3.2, 7.3.3, 7.3.4, and 7.3.5 and Collaboration Endp... |
| CVE-2016-1373 | — | — | 1.1% | May 5, 2016 | The gadgets-integration API in Cisco Finesse 8.5(1) through 8.5(5), 8.6(1), 9.0(1), 9.0(2), 9.1(1), 9.1(1)SU1, 9.1(1)SU1... |
| CVE-2016-1369 | — | — | 1.9% | May 5, 2016 | The Adaptive Security Appliance (ASA) 5585-X FirePOWER Security Services Processor (SSP) module for Cisco ASA with FireP... |
| CVE-2016-1368 | — | — | 1.6% | May 5, 2016 | Cisco FirePOWER System Software 5.3.x through 5.3.0.6 and 5.4.x through 5.4.0.3 on FirePOWER 7000 and 8000 appliances, a... |
| CVE-2016-4535 | — | — | 9.8% | May 5, 2016 | Integer signedness error in the AV engine before DAT 8145, as used in McAfee LiveSafe 14.0, allows remote attackers to c... |
| CVE-2016-4534 | — | — | 2.3% | May 5, 2016 | The McAfee VirusScan Console (mcconsol.exe) in McAfee VirusScan Enterprise 8.8.0 before Hotfix 1123565 (8.8.0.1546) on W... |
| CVE-2016-4351 | CRITICAL | 9.8 | 2.8% | May 5, 2016 | SQL injection vulnerability in the authentication functionality in Trend Micro Email Encryption Gateway (TMEEG) 5.5 befo... |
| CVE-2016-4008 | — | — | 29.6% | May 5, 2016 | The _asn1_extract_der_octet function in lib/decoding.c in GNU Libtasn1 before 4.8, when used without the ASN1_DECODE_FLA... |
| CVE-2016-3718 | MEDIUM | 5.5 | 76.9% | May 5, 2016 | The (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct ... |
| CVE-2016-3717 | — | — | 20.4% | May 5, 2016 | The LABEL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to read arbitrary files vi... |
| CVE-2016-3716 | — | — | 11.4% | May 5, 2016 | The MSL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to move arbitrary files via ... |
| CVE-2016-3715 | MEDIUM | 5.5 | 75.4% | May 5, 2016 | The EPHEMERAL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to delete arbitrary fi... |
| CVE-2016-3714 | HIGH | 8.4 | 97.5% | May 5, 2016 | The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7) WIN, and (8) PLT coders in ImageMagick before 6.... |
| CVE-2016-2168 | — | — | 19.6% | May 5, 2016 | The req_check_access function in the mod_authz_svn module in the httpd server in Apache Subversion before 1.8.16 and 1.9... |
| CVE-2016-2167 | — | — | 6.9% | May 5, 2016 | The canonicalize_username function in svnserve/cyrus_auth.c in Apache Subversion before 1.8.16 and 1.9.x before 1.9.4, w... |
| CVE-2016-2176 | — | — | 22.8% | May 5, 2016 | The X509_NAME_oneline function in crypto/x509/x509_obj.c in OpenSSL before 1.0.1t and 1.0.2 before 1.0.2h allows remote ... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now