2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2016-20007HIGH7.5The REST/JSON project 7.x-1.x for Drupal allows session name guessing, aka SA-CONTRIB-2016-033. NOTE: This project is no...
CVE-2016-20006HIGH7.5The REST/JSON project 7.x-1.x for Drupal allows blockage of user logins, aka SA-CONTRIB-2016-033. NOTE: This project is ...
CVE-2016-11086HIGH7.4lib/oauth/consumer.rb in the oauth-ruby gem through 0.5.4 for Ruby does not verify server X.509 certificates if a certif...
CVE-2016-7064HIGH7.5A flaw was found in pritunl-client before version 1.0.1116.6. A lack of signature verification leads to sensitive inform...
CVE-2016-11069HIGH7.5An issue was discovered in Mattermost Server before 3.2.0. It mishandles brute-force attempts at password change.
CVE-2016-11066HIGH7.5An issue was discovered in Mattermost Server before 3.2.0. The initial_load API disclosed unnecessary personal informati...
CVE-2016-11060HIGH7.5Certain NETGEAR devices are affected by insecure renegotiation. This affects SRX5308 before 2017-02-10, FVS336Gv3 before...
CVE-2016-11059HIGH7.5Certain NETGEAR devices are affected by password exposure. This affects AC1450 before 2017-01-06, C6300 before 2017-01-0...
CVE-2016-11058HIGH7.5The NETGEAR genie application before 2.4.34 for Android is affected by mishandling of hard-coded API keys and session ID...
CVE-2016-11057HIGH7.5Certain NETGEAR devices are affected by mishandling of repeated URL calls. This affects JNR1010v2 before 2017-01-06, WNR...
CVE-2016-11056HIGH8.8Certain NETGEAR devices are affected by anonymous root access. This affects ReadyNAS Surveillance 1.1.1-3-armel and earl...
CVE-2016-11054HIGH7.2NETGEAR DGN2200v4 devices before 2017-01-06 are affected by command execution and an FTP insecure root directory.
CVE-2016-11039HIGH7.5An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), and M(6.0) (AP + CP MDM9x35, or Qualcomm One...
CVE-2016-11031HIGH7.5An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), and M(6.0) software. AntService allows a sys...
CVE-2016-11030HIGH8.1An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), and M(6.0) (with Hrm sensor support) softwar...
CVE-2016-11029HIGH7.5An issue was discovered on Samsung mobile devices with L(5.0/5.1), M(6.0), and N(7.0) software. Attackers can read the p...
CVE-2016-11026HIGH7.5An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), and M(6.0) software. BootReceiver allows att...
CVE-2016-11052HIGH7.8An issue was discovered on Samsung mobile devices with L(5.0/5.1) software. je_free in libQjpeg.so in Qjpeg in Qt 5.5 al...
CVE-2016-11047HIGH7.8An issue was discovered on Samsung mobile devices with JBP(4.2) and KK(4.4) (Marvell chipsets) software. The ACIPC-MSOCK...
CVE-2016-11046HIGH7.5An issue was discovered on Samsung mobile devices with JBP(4.3), KK(4.4), and L(5.0/5.1) software. Because of a misused ...
CVE-2016-11045HIGH7.8An issue was discovered on Samsung mobile devices with L(5.0/5.1) software. The Gallery library allow memory corruption ...
CVE-2016-11044HIGH7.8An issue was discovered on Samsung mobile devices with L(5.0/5.1) and M(6.0) (with Fingerprint support) software. The ch...
CVE-2016-11043HIGH7.5An issue was discovered on Samsung mobile devices with M(6.0) software. The S/MIME implementation in EAS uses DES (where...
CVE-2016-11042HIGH7.5An issue was discovered on Samsung mobile devices with L(5.0/5.1) and M(6.0) software. There is a SIM Lock bypass. The S...
CVE-2016-11022HIGH7.2NETGEAR Prosafe WC9500 5.1.0.17, WC7600 5.1.0.17, and WC7520 2.5.0.35 devices allow a remote attacker to execute code wi...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now