2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-1024 | HIGH | 8.8 | 3.8% | Apr 9, 2016 | Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616... |
| CVE-2016-1023 | HIGH | 8.8 | 3.8% | Apr 9, 2016 | Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616... |
| CVE-2016-1022 | HIGH | 8.8 | 3.8% | Apr 9, 2016 | Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616... |
| CVE-2016-1021 | HIGH | 8.8 | 3.8% | Apr 9, 2016 | Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616... |
| CVE-2016-1020 | HIGH | 8.8 | 3.8% | Apr 9, 2016 | Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616... |
| CVE-2016-1018 | HIGH | 8.8 | 8.3% | Apr 9, 2016 | Stack-based buffer overflow in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows a... |
| CVE-2016-1017 | HIGH | 8.8 | 6.1% | Apr 9, 2016 | Use-after-free vulnerability in the LoadVars.decode function in Adobe Flash Player before 18.0.0.343 and 19.x through 21... |
| CVE-2016-1016 | HIGH | 8.8 | 6.1% | Apr 9, 2016 | Use-after-free vulnerability in the Transform object implementation in Adobe Flash Player before 18.0.0.343 and 19.x thr... |
| CVE-2016-1015 | HIGH | 8.8 | 7.1% | Apr 9, 2016 | Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616... |
| CVE-2016-1014 | HIGH | 7.3 | 1.2% | Apr 9, 2016 | Untrusted search path vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on W... |
| CVE-2016-1013 | HIGH | 8.8 | 22.8% | Apr 9, 2016 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows ... |
| CVE-2016-1012 | HIGH | 8.8 | 3.8% | Apr 9, 2016 | Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616... |
| CVE-2016-1011 | HIGH | 8.8 | 25.6% | Apr 9, 2016 | Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows ... |
| CVE-2016-1006 | HIGH | 8.1 | 3.9% | Apr 9, 2016 | Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616... |
| CVE-2016-3984 | — | — | 1.1% | Apr 8, 2016 | The McAfee VirusScan Console (mcconsol.exe) in McAfee Active Response (MAR) before 1.1.0.161, Agent (MA) 5.x before 5.0.... |
| CVE-2016-3983 | — | — | 0.6% | Apr 8, 2016 | McAfee Advanced Threat Defense (ATD) before 3.4.8.178 might allow remote attackers to bypass malware detection by levera... |
| CVE-2016-3963 | — | — | 8.6% | Apr 8, 2016 | Siemens SCALANCE S613 allows remote attackers to cause a denial of service (web-server outage) via traffic to TCP port 4... |
| CVE-2016-2513 | — | — | 3.3% | Apr 8, 2016 | The password hasher in contrib/auth/hashers.py in Django before 1.8.10 and 1.9.x before 1.9.3 allows remote attackers to... |
| CVE-2016-2512 | — | — | 4.0% | Apr 8, 2016 | The utils.http.is_safe_url function in Django before 1.8.10 and 1.9.x before 1.9.3 allows remote attackers to redirect u... |
| CVE-2016-2381 | HIGH | 7.5 | 9.0% | Apr 8, 2016 | Perl might allow context-dependent attackers to bypass the taint protection mechanism in a child process via duplicate e... |
| CVE-2016-1375 | — | — | 0.8% | Apr 8, 2016 | Cross-site scripting (XSS) vulnerability in Cisco IP Interoperability and Collaboration System 4.10(1) allows remote att... |
| CVE-2016-1180 | MEDIUM | 6.1 | 1.6% | Apr 8, 2016 | Cross-site scripting (XSS) vulnerability in the Cyber-Will Social-button Premium plugin before 1.1 for EC-CUBE 2.13.x al... |
| CVE-2016-3980 | — | — | 7.1% | Apr 8, 2016 | The Java Startup Framework (aka jstart) in SAP JAVA AS 7.2 through 7.4 allows remote attackers to cause a denial of serv... |
| CVE-2016-3979 | — | — | 6.4% | Apr 8, 2016 | Internet Communication Manager (aka ICMAN or ICM) in SAP JAVA AS 7.2 through 7.4 allows remote attackers to cause a deni... |
| CVE-2016-3978 | — | — | 6.3% | Apr 8, 2016 | The Web User Interface (WebUI) in FortiOS 5.0.x before 5.0.13, 5.2.x before 5.2.3, and 5.4.x before 5.4.0 allows remote ... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now