2016 CVE Vulnerabilities

10,648 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-0623——Unspecified vulnerability in Oracle Sun Solaris 11.3 allows remote attackers to affect integrity via vectors related to ...
CVE-2016-0479——Unspecified vulnerability in the Oracle Business Intelligence Enterprise Edition component in Oracle Fusion Middleware 1...
CVE-2016-0469——Unspecified vulnerability in the Oracle Retail MICROS C2 component in Oracle Retail Applications 9.89.0.0 allows local u...
CVE-2016-0468——Unspecified vulnerability in the Oracle Business Intelligence Enterprise Edition component in Oracle Fusion Middleware 1...
CVE-2016-0408——Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53 through ...
CVE-2016-0407——Unspecified vulnerability in the PeopleSoft Enterprise HCM component in Oracle PeopleSoft Products 9.1 and 9.2 allows re...
CVE-2016-2202——The Inventory Solution component in the Management Agent in the client in Symantec Altiris IT Management Suite (ITMS) th...
CVE-2016-2003——HPE P9000 Command View Advanced Edition Software (CVAE) 7.x and 8.x before 8.4.0-00 and XP7 CVAE 7.x and 8.x before 8.4....
CVE-2016-2002——The validateAdminConfig handler in the Analytics Management Console in HPE Vertica 7.0.x before 7.0.2.12, 7.1.x before 7...
CVE-2016-1384——The NTP implementation in Cisco IOS 15.1 and 15.5 and IOS XE 3.2 through 3.17 allows remote attackers to modify the syst...
CVE-2016-0891——Multiple cross-site request forgery (CSRF) vulnerabilities in administrative pages in EMC ViPR SRM before 3.7 allow remo...
CVE-2016-3628——Buffer overflow in tibemsd in the server in TIBCO Enterprise Message Service (EMS) before 8.3.0 and EMS Appliance before...
CVE-2016-2390——The FwdState::connectedToPeer method in FwdState.cc in Squid before 3.5.14 and 4.0.x before 4.0.6 does not properly hand...
CVE-2016-0741——slapd/connection.c in 389 Directory Server (formerly Fedora Directory Server) 1.3.4.x before 1.3.4.7 allows remote attac...
CVE-2016-4040——SQL injection vulnerability in the Workflow Screen in dotCMS before 3.3.2 allows remote administrators to execute arbitr...
CVE-2016-3960——Integer overflow in the x86 shadow pagetable code in Xen allows local guest OS users to cause a denial of service (host ...
CVE-2016-3688——SQL injection vulnerability in dotCMS before 3.5 allows remote administrators to execute arbitrary SQL commands via the ...
CVE-2016-3186——Buffer overflow in the readextension function in gif2tiff.c in LibTIFF 4.0.6 allows remote attackers to cause a denial o...
CVE-2016-3972——Directory traversal vulnerability in the dotTailLogServlet in dotCMS before 3.5.1 allows remote authenticated administra...
CVE-2016-3971——Cross-site scripting (XSS) vulnerability in lucene_search.jsp in dotCMS before 3.5.1 allows remote attackers to inject a...
CVE-2016-3943HIGH7.8Panda Endpoint Administration Agent before 7.50.00, as used in Panda Security for Business products for Windows, uses a ...
CVE-2016-3941——Buffer overflow in the AStreamPeekStream function in input/stream.c in VideoLAN VLC media player before 2.2.0 allows rem...
CVE-2016-4036——The quagga package before 0.99.23-2.6.1 in openSUSE and SUSE Linux Enterprise Server 11 SP 1 uses weak permissions for /...
CVE-2016-3950——Huawei AR3200 routers with software before V200R006C10SPC300 allow remote authenticated users to cause a denial of servi...
CVE-2016-3071——Libreswan 3.16 might allow remote attackers to cause a denial of service (daemon restart) via an IKEv2 aes_xcbc transfor...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now