2016 CVE Vulnerabilities

10,648 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-5867——In a sound driver in Android for MSM, Firefox OS for MSM, QRD Android, some variables are from userspace and values can ...
CVE-2016-5864——In an audio driver function in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, some para...
CVE-2016-5863——In an ioctl handler in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, several sanity ch...
CVE-2016-5862——When a control related to codec is issued from userspace in all Qualcomm products with Android for MSM, Firefox OS for M...
CVE-2016-5861——In a display driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, a variable contro...
CVE-2016-5860——In an audio driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, if a function is c...
CVE-2016-5859——In a sound driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, if a function is ca...
CVE-2016-5858——In an ioctl handler in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, if a user supplie...
CVE-2016-5855——In a driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, a user-supplied buffer is...
CVE-2016-5854——In a driver in all Qualcomm products with Android for MSM, Firefox OS for MSM, or QRD Android, kernel heap memory can be...
CVE-2016-5853——In an audio driver in all Qualcomm products with Android releases from CAF using the Linux kernel, when a sanity check e...
CVE-2016-5347——In all Qualcomm products with Android releases from CAF using the Linux kernel, kernel stack data can be leaked to users...
CVE-2016-6029——IBM Emptoris Strategic Supply Management Platform 10.0 and 10.1 could allow a remote attacker to obtain sensitive inform...
CVE-2016-6021——IBM Emptoris Strategic Supply Management Platform 10.0 and 10.1 is vulnerable to cross-site scripting. This vulnerabilit...
CVE-2016-8745——A bug in the error handling of the send file code for the NIO HTTP connector in Apache Tomcat 9.0.0.M1 to 9.0.0.M13, 8.5...
CVE-2016-8739——The JAX-RS module in Apache CXF prior to 3.0.12 and 3.1.x prior to 3.1.9 provides a number of Atom JAX-RS MessageBodyRea...
CVE-2016-6812——The HTTP transport module in Apache CXF prior to 3.0.12 and 3.1.x prior to 3.1.9 uses FormattedServiceListWriter to prov...
CVE-2016-8949——IBM Emptoris Supplier Lifecycle Management 10.0.x and 10.1.x could allow a remote attacker to conduct phishing attacks, ...
CVE-2016-6121——IBM Emptoris Supplier Lifecycle Management 10.0.x and 10.1.x is vulnerable to cross-site scripting. This vulnerability a...
CVE-2016-5716——The console in Puppet Enterprise 2015.x and 2016.x prior to 2016.4.0 includes unsafe string reads that potentially allow...
CVE-2016-7976——The PS Interpreter in Ghostscript 9.18 and 9.20 allows remote attackers to execute arbitrary code via crafted userparams...
CVE-2016-10404——XSS exists in Liferay Portal before 7.0 CE GA4 via a crafted redirect field to modules/apps/foundation/frontend-js/front...
CVE-2016-9981——IBM AppScan Enterprise Edition 9.0 contains an unspecified vulnerability that could allow an attacker to hijack a valid ...
CVE-2016-7845——GigaCC OFFICE ver.2.3 and earlier allows remote attackers to upload arbitrary files as a user profile image, which may b...
CVE-2016-7844——GigaCC OFFICE ver.2.3 and earlier allows remote attackers to execute arbitrary OS commands via specially crafted mail te...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now