2016 CVE Vulnerabilities

10,648 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-1200——The management screen in LOCKON EC-CUBE 3.0.7 through 3.0.9 allows remote authenticated users to bypass intended access ...
CVE-2016-1199——The login page in the management screen in LOCKON EC-CUBE 3.0.0 through 3.0.9 allows remote attackers to bypass intended...
CVE-2016-1111——Double free vulnerability in Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.00...
CVE-2016-4349——Untrusted search path vulnerability in Cisco WebEx Productivity Tools 2.40.5001.10012 allows local users to gain privile...
CVE-2016-1389——Open redirect vulnerability in Cisco WebEx Meetings Server (CWMS) 2.6 allows remote attackers to redirect users to arbit...
CVE-2016-1386——The API in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.0(1) allows remote attackers...
CVE-2016-1205——Cross-site scripting (XSS) vulnerability in the shiro8 (1) category_freearea_ addition_plugin plugin 1.0 and (2) itemdet...
CVE-2016-0211——IBM DB2 9.7 through FP11, 9.8, 10.1 through FP5, and 10.5 through FP7 on Linux, UNIX, and Windows allows remote authenti...
CVE-2016-3672——The arch_pick_mmap_layout function in arch/x86/mm/mmap.c in the Linux kernel through 4.5.2 does not properly randomize t...
CVE-2016-3156——The IPv4 implementation in the Linux kernel before 4.5.2 mishandles destruction of device objects, which allows guest OS...
CVE-2016-3139——The wacom_probe function in drivers/input/tablet/wacom_sys.c in the Linux kernel before 3.17 allows physically proximate...
CVE-2016-3135HIGH7.8Integer overflow in the xt_alloc_table_info function in net/netfilter/x_tables.c in the Linux kernel through 4.5.2 on 32...
CVE-2016-3134——The netfilter subsystem in the Linux kernel through 4.5.2 does not validate certain offset fields, which allows local us...
CVE-2016-2847——fs/pipe.c in the Linux kernel before 4.5 does not limit the amount of unread data in pipes, which allows local users to ...
CVE-2016-2782MEDIUM4.6The treo_attach function in drivers/usb/serial/visor.c in the Linux kernel before 4.5 allows physically proximate attack...
CVE-2016-2550——The Linux kernel before 4.5 allows local users to bypass file-descriptor limits and cause a denial of service (memory co...
CVE-2016-2549——sound/core/hrtimer.c in the Linux kernel before 4.4.1 does not prevent recursive callback access, which allows local use...
CVE-2016-2548——sound/core/timer.c in the Linux kernel before 4.4.1 retains certain linked lists after a close or stop action, which all...
CVE-2016-2547——sound/core/timer.c in the Linux kernel before 4.4.1 employs a locking approach that does not consider slave timer instan...
CVE-2016-2546——sound/core/timer.c in the Linux kernel before 4.4.1 uses an incorrect type of mutex, which allows local users to cause a...
CVE-2016-2545——The snd_timer_interrupt function in sound/core/timer.c in the Linux kernel before 4.4.1 does not properly maintain a cer...
CVE-2016-2544——Race condition in the queue_delete function in sound/core/seq/seq_queue.c in the Linux kernel before 4.4.1 allows local ...
CVE-2016-2543——The snd_seq_ioctl_remove_events function in sound/core/seq/seq_clientmgr.c in the Linux kernel before 4.4.1 does not ver...
CVE-2016-2384——Double free vulnerability in the snd_usbmidi_create function in sound/usb/midi.c in the Linux kernel before 4.5 allows p...
CVE-2016-2383MEDIUM5.5The adjust_branches function in kernel/bpf/verifier.c in the Linux kernel before 4.5 does not consider the delta in the ...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now