2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-1639 | — | — | 2.3% | Mar 6, 2016 | Use-after-free vulnerability in browser/extensions/api/webrtc_audio_private/webrtc_audio_private_api.cc in the WebRTC Au... |
| CVE-2016-1638 | — | — | 1.1% | Mar 6, 2016 | extensions/renderer/resources/platform_app.js in the Extensions subsystem in Google Chrome before 49.0.2623.75 does not ... |
| CVE-2016-1637 | — | — | 1.1% | Mar 6, 2016 | The SkATan2_255 function in effects/gradients/SkSweepGradient.cpp in Skia, as used in Google Chrome before 49.0.2623.75,... |
| CVE-2016-1636 | — | — | 1.8% | Mar 6, 2016 | The PendingScript::notifyFinished function in WebKit/Source/core/dom/PendingScript.cpp in Google Chrome before 49.0.2623... |
| CVE-2016-1635 | — | — | 2.3% | Mar 6, 2016 | extensions/renderer/render_frame_observer_natives.cc in Google Chrome before 49.0.2623.75 does not properly consider obj... |
| CVE-2016-1634 | — | — | 1.6% | Mar 6, 2016 | Use-after-free vulnerability in the StyleResolver::appendCSSStyleSheet function in WebKit/Source/core/css/resolver/Style... |
| CVE-2016-1633 | — | — | 2.5% | Mar 6, 2016 | Use-after-free vulnerability in Blink, as used in Google Chrome before 49.0.2623.75, allows remote attackers to cause a ... |
| CVE-2016-1632 | — | — | 1.3% | Mar 6, 2016 | The Extensions subsystem in Google Chrome before 49.0.2623.75 does not properly maintain own properties, which allows re... |
| CVE-2016-1631 | — | — | 1.3% | Mar 6, 2016 | The PPB_Flash_MessageLoop_Impl::InternalRun function in content/renderer/pepper/ppb_flash_message_loop_impl.cc in the Pe... |
| CVE-2016-1630 | — | — | 1.1% | Mar 6, 2016 | The ContainerNode::parserRemoveChild function in WebKit/Source/core/dom/ContainerNode.cpp in Blink, as used in Google Ch... |
| CVE-2016-2283 | — | — | 1.2% | Mar 4, 2016 | Moxa ioLogik E2200 devices before 3.12 and ioAdmin Configuration Utility before 3.18 do not properly encrypt data, which... |
| CVE-2016-2282 | — | — | 1.7% | Mar 4, 2016 | Moxa ioLogik E2200 devices before 3.12 and ioAdmin Configuration Utility before 3.18 do not properly encrypt credentials... |
| CVE-2016-2244 | — | — | 3.2% | Mar 4, 2016 | HP LaserJet printers and MFPs and OfficeJet Enterprise printers with firmware before 3.7.01 allow remote attackers to ob... |
| CVE-2016-2243 | — | — | 0.4% | Mar 4, 2016 | Sure Start on HP Commercial PCs 2015 allows local users to cause a denial of service (BIOS recovery failure) by leveragi... |
| CVE-2016-1359 | — | — | 2.2% | Mar 3, 2016 | Cisco Prime Infrastructure 3.0 allows remote authenticated users to execute arbitrary code via a crafted HTTP request th... |
| CVE-2016-1358 | — | — | 1.3% | Mar 3, 2016 | Cisco Prime Infrastructure 2.2, 3.0, and 3.1(0.0) allows remote authenticated users to read arbitrary files or cause a d... |
| CVE-2016-1357 | — | — | 1.1% | Mar 3, 2016 | The password-management administration component in Cisco Policy Suite (CPS) 7.0.1.3, 7.0.2, 7.0.2-att, 7.0.3-att, 7.0.4... |
| CVE-2016-1356 | — | — | 0.8% | Mar 3, 2016 | Cisco FireSIGHT System Software 6.1.0 does not use a constant-time algorithm for verifying credentials, which makes it e... |
| CVE-2016-1288 | — | — | 1.7% | Mar 3, 2016 | The HTTPS Proxy feature in Cisco AsyncOS before 8.5.3-051 and 9.x before 9.0.0-485 on Web Security Appliance (WSA) devic... |
| CVE-2016-1158 | — | — | 0.6% | Mar 3, 2016 | Cross-site request forgery (CSRF) vulnerability on Corega CG-WLBARGMH and CG-WLBARGNL devices allows remote attackers to... |
| CVE-2016-0227 | — | — | 0.9% | Mar 3, 2016 | Cross-site scripting (XSS) vulnerability in the document-list control implementation in IBM Business Process Manager (BP... |
| CVE-2016-2842 | — | — | 53.7% | Mar 3, 2016 | The doapr_outch function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g does not verify ... |
| CVE-2016-0799 | — | — | 32.4% | Mar 3, 2016 | The fmtstr function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g improperly calculates... |
| CVE-2016-0798 | — | — | 24.4% | Mar 3, 2016 | Memory leak in the SRP_VBASE_get_by_user implementation in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g allows re... |
| CVE-2016-0797 | HIGH | 7.5 | 27.0% | Mar 3, 2016 | Multiple integer overflows in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g allow remote attackers to cause a deni... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now