2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-0479Unspecified vulnerability in the Oracle Business Intelligence Enterprise Edition component in Oracle Fusion Middleware 1...
CVE-2016-0469Unspecified vulnerability in the Oracle Retail MICROS C2 component in Oracle Retail Applications 9.89.0.0 allows local u...
CVE-2016-0468Unspecified vulnerability in the Oracle Business Intelligence Enterprise Edition component in Oracle Fusion Middleware 1...
CVE-2016-0408Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53 through ...
CVE-2016-0407Unspecified vulnerability in the PeopleSoft Enterprise HCM component in Oracle PeopleSoft Products 9.1 and 9.2 allows re...
CVE-2016-2202The Inventory Solution component in the Management Agent in the client in Symantec Altiris IT Management Suite (ITMS) th...
CVE-2016-2003HPE P9000 Command View Advanced Edition Software (CVAE) 7.x and 8.x before 8.4.0-00 and XP7 CVAE 7.x and 8.x before 8.4....
CVE-2016-2002The validateAdminConfig handler in the Analytics Management Console in HPE Vertica 7.0.x before 7.0.2.12, 7.1.x before 7...
CVE-2016-1384The NTP implementation in Cisco IOS 15.1 and 15.5 and IOS XE 3.2 through 3.17 allows remote attackers to modify the syst...
CVE-2016-0891Multiple cross-site request forgery (CSRF) vulnerabilities in administrative pages in EMC ViPR SRM before 3.7 allow remo...
CVE-2016-3628Buffer overflow in tibemsd in the server in TIBCO Enterprise Message Service (EMS) before 8.3.0 and EMS Appliance before...
CVE-2016-2390The FwdState::connectedToPeer method in FwdState.cc in Squid before 3.5.14 and 4.0.x before 4.0.6 does not properly hand...
CVE-2016-0741slapd/connection.c in 389 Directory Server (formerly Fedora Directory Server) 1.3.4.x before 1.3.4.7 allows remote attac...
CVE-2016-4040SQL injection vulnerability in the Workflow Screen in dotCMS before 3.3.2 allows remote administrators to execute arbitr...
CVE-2016-3960Integer overflow in the x86 shadow pagetable code in Xen allows local guest OS users to cause a denial of service (host ...
CVE-2016-3688SQL injection vulnerability in dotCMS before 3.5 allows remote administrators to execute arbitrary SQL commands via the ...
CVE-2016-3186Buffer overflow in the readextension function in gif2tiff.c in LibTIFF 4.0.6 allows remote attackers to cause a denial o...
CVE-2016-3972Directory traversal vulnerability in the dotTailLogServlet in dotCMS before 3.5.1 allows remote authenticated administra...
CVE-2016-3971Cross-site scripting (XSS) vulnerability in lucene_search.jsp in dotCMS before 3.5.1 allows remote attackers to inject a...
CVE-2016-3943HIGH7.8Panda Endpoint Administration Agent before 7.50.00, as used in Panda Security for Business products for Windows, uses a ...
CVE-2016-3941Buffer overflow in the AStreamPeekStream function in input/stream.c in VideoLAN VLC media player before 2.2.0 allows rem...
CVE-2016-4036The quagga package before 0.99.23-2.6.1 in openSUSE and SUSE Linux Enterprise Server 11 SP 1 uses weak permissions for /...
CVE-2016-3950Huawei AR3200 routers with software before V200R006C10SPC300 allow remote authenticated users to cause a denial of servi...
CVE-2016-3071Libreswan 3.16 might allow remote attackers to cause a denial of service (daemon restart) via an IKEv2 aes_xcbc transfor...
CVE-2016-1659Multiple unspecified vulnerabilities in Google Chrome before 50.0.2661.75 allow attackers to cause a denial of service o...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now