2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2016-9701IBM Team Concert 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitr...
CVE-2016-0238IBM Security Guardium 9.0, 9.1, 9.5, 10.0, and 10.1 transmits sensitive data in cleartext in the query of the request. T...
CVE-2016-6201Cross-site scripting (XSS) vulnerability in Ektron Content Management System (CMS) before 9.1.0.184 SP3 (9.1.0.184.3.127...
CVE-2016-6127Cross-site scripting (XSS) vulnerability in Request Tracker (RT) 4.x before 4.0.25, 4.2.x before 4.2.14, and 4.4.x befor...
CVE-2016-5045NetApp OnCommand System Manager before 9.0 allows remote attackers to obtain sensitive credentials via vectors related t...
CVE-2016-3998NetApp AltaVault 4.1 and earlier allows man-in-the-middle attackers to obtain sensitive information, gain privileges, or...
CVE-2016-3997NetApp Clustered Data ONTAP allows man-in-the-middle attackers to obtain sensitive information, gain privileges, or caus...
CVE-2016-3400NetApp Data ONTAP 8.1 and 8.2, when operating in 7-Mode, allows man-in-the-middle attackers to obtain sensitive informat...
CVE-2016-9358A Hard-Coded Passwords issue was discovered in Marel Food Processing Systems M3000 terminal associated with the followin...
CVE-2016-10042Authorization Bypass in the Web interface of Arcadyan SLT-00 Star* (aka Swisscom Internet-Box) devices before R7.7 allow...
CVE-2016-7062rhscon-ceph in Red Hat Storage Console 2 x86_64 and Red Hat Storage Console Node 2 x86_64 allows local users to obtain t...
CVE-2016-5414FreeIPA 4.4.0 allows remote attackers to request an arbitrary SAN name for services.
CVE-2016-4383The glance-manage db in all versions of HPE Helion Openstack Glance allows deleted image ids to be reassigned, which all...
CVE-2016-0959Use after free vulnerability in Adobe Flash Player Desktop Runtime before 20.0.0.267, Adobe Flash Player Extended Suppor...
CVE-2016-9972IBM QRadar 7.2 and 7.3 could allow a remote attacker to obtain sensitive information, caused by the failure to properly ...
CVE-2016-9738IBM QRadar 7.2 and 7.3 does not require that users should have strong passwords by default, which makes it easier for at...
CVE-2016-6083IBM Tivoli Monitoring V6 could allow an unauthenticated user to access SOAP queries that could contain sensitive informa...
CVE-2016-8498Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca...
CVE-2016-8493In FortiClientWindows 5.4.1 and 5.4.2, an attacker may escalate privilege via a FortiClientNamedPipe vulnerability.
CVE-2016-5893IBM Sterling B2B Integrator Standard Edition 5.2 allows web pages to be stored locally which can be read by another user...
CVE-2016-9983IBM Sterling B2B Integrator Standard Edition 5.2 could allow an authenticated user with special privileges to view files...
CVE-2016-9982IBM Sterling B2B Integrator Standard Edition 5.2 could allow an authenticated user to obtain sensitive information such ...
CVE-2016-9747IBM RELM 4.0, 5.0 and 6.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Java...
CVE-2016-7508Multiple SQL injection vulnerabilities in GLPI 0.90.4 allow an authenticated remote attacker to execute arbitrary SQL co...
CVE-2016-10366Kibana versions after and including 4.3 and before 4.6.2 are vulnerable to a cross-site scripting (XSS) attack.

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now