2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-9701 | — | — | 0.7% | Jul 5, 2017 | IBM Team Concert 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitr... |
| CVE-2016-0238 | — | — | 0.9% | Jul 5, 2017 | IBM Security Guardium 9.0, 9.1, 9.5, 10.0, and 10.1 transmits sensitive data in cleartext in the query of the request. T... |
| CVE-2016-6201 | — | — | 0.9% | Jul 3, 2017 | Cross-site scripting (XSS) vulnerability in Ektron Content Management System (CMS) before 9.1.0.184 SP3 (9.1.0.184.3.127... |
| CVE-2016-6127 | — | — | 1.2% | Jul 3, 2017 | Cross-site scripting (XSS) vulnerability in Request Tracker (RT) 4.x before 4.0.25, 4.2.x before 4.2.14, and 4.4.x befor... |
| CVE-2016-5045 | — | — | 1.5% | Jul 3, 2017 | NetApp OnCommand System Manager before 9.0 allows remote attackers to obtain sensitive credentials via vectors related t... |
| CVE-2016-3998 | — | — | 0.9% | Jul 3, 2017 | NetApp AltaVault 4.1 and earlier allows man-in-the-middle attackers to obtain sensitive information, gain privileges, or... |
| CVE-2016-3997 | — | — | 0.8% | Jul 3, 2017 | NetApp Clustered Data ONTAP allows man-in-the-middle attackers to obtain sensitive information, gain privileges, or caus... |
| CVE-2016-3400 | — | — | 1.5% | Jul 3, 2017 | NetApp Data ONTAP 8.1 and 8.2, when operating in 7-Mode, allows man-in-the-middle attackers to obtain sensitive informat... |
| CVE-2016-9358 | — | — | 2.1% | Jun 30, 2017 | A Hard-Coded Passwords issue was discovered in Marel Food Processing Systems M3000 terminal associated with the followin... |
| CVE-2016-10042 | — | — | 0.9% | Jun 29, 2017 | Authorization Bypass in the Web interface of Arcadyan SLT-00 Star* (aka Swisscom Internet-Box) devices before R7.7 allow... |
| CVE-2016-7062 | — | — | 0.4% | Jun 27, 2017 | rhscon-ceph in Red Hat Storage Console 2 x86_64 and Red Hat Storage Console Node 2 x86_64 allows local users to obtain t... |
| CVE-2016-5414 | — | — | 1.0% | Jun 27, 2017 | FreeIPA 4.4.0 allows remote attackers to request an arbitrary SAN name for services. |
| CVE-2016-4383 | — | — | 2.7% | Jun 27, 2017 | The glance-manage db in all versions of HPE Helion Openstack Glance allows deleted image ids to be reassigned, which all... |
| CVE-2016-0959 | — | — | 5.2% | Jun 27, 2017 | Use after free vulnerability in Adobe Flash Player Desktop Runtime before 20.0.0.267, Adobe Flash Player Extended Suppor... |
| CVE-2016-9972 | — | — | — | Jun 27, 2017 | IBM QRadar 7.2 and 7.3 could allow a remote attacker to obtain sensitive information, caused by the failure to properly ... |
| CVE-2016-9738 | — | — | — | Jun 27, 2017 | IBM QRadar 7.2 and 7.3 does not require that users should have strong passwords by default, which makes it easier for at... |
| CVE-2016-6083 | — | — | — | Jun 27, 2017 | IBM Tivoli Monitoring V6 could allow an unauthenticated user to access SOAP queries that could contain sensitive informa... |
| CVE-2016-8498 | — | — | — | Jun 26, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2016-8493 | — | — | — | Jun 26, 2017 | In FortiClientWindows 5.4.1 and 5.4.2, an attacker may escalate privilege via a FortiClientNamedPipe vulnerability. |
| CVE-2016-5893 | — | — | 0.3% | Jun 23, 2017 | IBM Sterling B2B Integrator Standard Edition 5.2 allows web pages to be stored locally which can be read by another user... |
| CVE-2016-9983 | — | — | 1.1% | Jun 22, 2017 | IBM Sterling B2B Integrator Standard Edition 5.2 could allow an authenticated user with special privileges to view files... |
| CVE-2016-9982 | — | — | 1.2% | Jun 22, 2017 | IBM Sterling B2B Integrator Standard Edition 5.2 could allow an authenticated user to obtain sensitive information such ... |
| CVE-2016-9747 | — | — | 0.7% | Jun 22, 2017 | IBM RELM 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Java... |
| CVE-2016-7508 | — | — | 1.6% | Jun 21, 2017 | Multiple SQL injection vulnerabilities in GLPI 0.90.4 allow an authenticated remote attacker to execute arbitrary SQL co... |
| CVE-2016-10366 | — | — | 0.9% | Jun 16, 2017 | Kibana versions after and including 4.3 and before 4.6.2 are vulnerable to a cross-site scripting (XSS) attack. |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now