2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-1596 | — | — | 2.4% | Apr 22, 2016 | Multiple cross-site scripting (XSS) vulnerabilities in Micro Focus Novell Service Desk before 7.2 allow remote authentic... |
| CVE-2016-1595 | — | — | 6.6% | Apr 22, 2016 | LiveTime/WebObjects/LiveTime.woa/wa/DownloadAction/downloadFile in Micro Focus Novell Service Desk before 7.2 allows rem... |
| CVE-2016-1594 | — | — | 6.9% | Apr 22, 2016 | Micro Focus Novell Service Desk before 7.2 allows remote authenticated users to read arbitrary attachments via a request... |
| CVE-2016-1593 | — | — | 64.1% | Apr 22, 2016 | Directory traversal vulnerability in the import users feature in Micro Focus Novell Service Desk before 7.2 allows remot... |
| CVE-2016-3145 | — | — | 0.3% | Apr 22, 2016 | Lexmark printers with firmware ATL before ATL.021.063, CB before CB.021.063, PP before PP.021.063, and YK before YK.021.... |
| CVE-2016-2354 | — | — | 1.1% | Apr 22, 2016 | The Bluetooth functionality in Lemur Vehicle Monitors BlueDriver before 2016-04-07 supports unrestricted pairing without... |
| CVE-2016-2306 | — | — | 1.9% | Apr 22, 2016 | The HMI web server in Ecava IntegraXor before 5.0 build 4522 allows remote attackers to obtain sensitive cleartext infor... |
| CVE-2016-2305 | — | — | 0.9% | Apr 22, 2016 | Cross-site scripting (XSS) vulnerability in Ecava IntegraXor before 5.0 build 4522 allows remote attackers to inject arb... |
| CVE-2016-2304 | — | — | 1.1% | Apr 22, 2016 | Ecava IntegraXor before 5.0 build 4522 does not include the HTTPOnly flag in a Set-Cookie header for the session cookie,... |
| CVE-2016-2303 | — | — | 1.1% | Apr 22, 2016 | CRLF injection vulnerability in Ecava IntegraXor before 5.0 build 4522 allows remote attackers to inject arbitrary HTTP ... |
| CVE-2016-2302 | — | — | 1.2% | Apr 22, 2016 | Ecava IntegraXor before 5.0 build 4522 allows remote attackers to obtain sensitive information by reading detailed error... |
| CVE-2016-2301 | — | — | 0.8% | Apr 22, 2016 | SQL injection vulnerability in Ecava IntegraXor before 5.0 build 4522 allows remote authenticated users to execute arbit... |
| CVE-2016-2300 | — | — | 1.2% | Apr 22, 2016 | Ecava IntegraXor before 5.0 build 4522 allows remote attackers to bypass authentication and access unspecified web pages... |
| CVE-2016-2299 | — | — | 1.4% | Apr 22, 2016 | SQL injection vulnerability in Ecava IntegraXor before 5.0 build 4522 allows remote attackers to execute arbitrary SQL c... |
| CVE-2016-3977 | — | — | 2.1% | Apr 21, 2016 | Heap-based buffer overflow in util/gif2rgb.c in gif2rgb in giflib 5.1.2 allows remote attackers to cause a denial of ser... |
| CVE-2016-3190 | — | — | 1.8% | Apr 21, 2016 | The fill_xrgb32_lerp_opaque_spans function in cairo-image-compositor.c in cairo before 1.14.2 allows remote attackers to... |
| CVE-2016-6479 | — | — | — | Apr 21, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2015-6479. Reason: This candidate is a duplicate of... |
| CVE-2016-3466 | — | — | 2.0% | Apr 21, 2016 | Unspecified vulnerability in the Oracle Field Service component in Oracle E-Business Suite 12.1.1, 12.1.2, and 12.1.3 al... |
| CVE-2016-3465 | — | — | 0.3% | Apr 21, 2016 | Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows local users to affect availability via vectors relate... |
| CVE-2016-3464 | — | — | 1.4% | Apr 21, 2016 | Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 12.0.3 a... |
| CVE-2016-3463 | — | — | 1.2% | Apr 21, 2016 | Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 12.0.3 a... |
| CVE-2016-3462 | — | — | 0.3% | Apr 21, 2016 | Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Ne... |
| CVE-2016-3461 | — | — | 1.6% | Apr 21, 2016 | Unspecified vulnerability in the MySQL Enterprise Monitor component in Oracle MySQL 3.0.25 and earlier and 3.1.2 and ear... |
| CVE-2016-3460 | — | — | 1.0% | Apr 21, 2016 | Unspecified vulnerability in the PeopleSoft Enterprise HCM component in Oracle PeopleSoft Products 9.2 allows remote aut... |
| CVE-2016-3457 | — | — | 0.9% | Apr 21, 2016 | Unspecified vulnerability in the PeopleSoft Enterprise HCM ePerformance component in Oracle PeopleSoft Products 9.2 allo... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now