2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

CVE IDSeverityCVSSDescription
CVE-2016-15015MEDIUM5.3A vulnerability, which was classified as problematic, was found in viafintech Barzahlen Payment Module PHP SDK up to 2.0...
CVE-2016-15014MEDIUM5.5A vulnerability has been found in CESNET theme-cesnet up to 1.x on ownCloud and classified as problematic. Affected by t...
CVE-2016-15013CRITICAL9.8A vulnerability was found in ForumHulp searchresults. It has been rated as critical. Affected by this issue is the funct...
CVE-2016-15012CRITICAL9.8** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in forcedotcom SalesforceMobileSDK-Windows up to 4.x. It has b...
CVE-2016-15011CRITICAL9.8A vulnerability classified as problematic was found in e-Contract dssp up to 1.3.1. Affected by this vulnerability is th...
CVE-2016-15010MEDIUM6.1** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as problematic was found in University of Cambridge django-uc...
CVE-2016-15009HIGH8.8A vulnerability classified as problematic has been found in OpenACS bug-tracker. Affected is an unknown function of the ...
CVE-2016-15008MEDIUM6.1A vulnerability was found in oxguy3 coebot-www and classified as problematic. This issue affects the function displayCha...
CVE-2016-15007CRITICAL9.8A vulnerability was found in Centralized-Salesforce-Dev-Framework. It has been declared as problematic. Affected by this...
CVE-2016-15006MEDIUM5.3A vulnerability, which was classified as problematic, has been found in enigmaX up to 2.2. This issue affects the functi...
CVE-2016-15005HIGH8.8CSRF tokens are generated using math/rand, which is not a cryptographically secure random number generator, allowing an ...
CVE-2016-20018HIGH7.5Knex Knex.js through 2.3.0 has a limited SQL injection vulnerability that can be exploited to ignore the WHERE clause of...
CVE-2016-20017CRITICAL9.8D-Link DSL-2750B devices before 1.05 allow remote unauthenticated command injection via the login.cgi cli parameter, as ...
CVE-2016-20016CRITICAL9.8MVPower CCTV DVR models, including TV-7104HE 1.8.4 115215B9 and TV7108HE, contain a web shell that is accessible via a /...
CVE-2016-2338CRITICAL9.8An exploitable heap overflow vulnerability exists in the Psych::Emitter start_document function of Ruby. In Psych::Emitt...
CVE-2016-20015HIGH7.5In the ebuild package through smokeping-2.7.3-r1 for SmokePing on Gentoo, the initscript allows the smokeping user to ga...
CVE-2016-3098MEDIUM5.4Cross-site request forgery (CSRF) vulnerability in administrate 0.1.4 and earlier allows remote attackers to hijack the ...
CVE-2016-4981Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-4982. Reason: This candidate is a duplicate of C...
CVE-2016-7049Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-7029Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-6326Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-6324Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-6315Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-6314Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2016-5428Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now