2016 CVE Vulnerabilities

10,647 CVEs published in 2016.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2016-6269CRITICAL9.1Multiple directory traversal vulnerabilities in Trend Micro Smart Protection Server 2.5 before build 2200, 2.6 before bu...
CVE-2016-10182CRITICAL9.8An issue was discovered on the D-Link DWR-932B router. qmiweb allows command injection with ` characters.
CVE-2016-10178CRITICAL9.8An issue was discovered on the D-Link DWR-932B router. HELODBG on port 39889 (UDP) launches the "/sbin/telnetd -l /bin/s...
CVE-2016-10177CRITICAL9.8An issue was discovered on the D-Link DWR-932B router. Undocumented TELNET and SSH services provide logins to admin with...
CVE-2016-10174CRITICAL9.8The NETGEAR WNR2000v5 router contains a buffer overflow in the hidden_lang_avi parameter when invoking the URL /apply.cg...
CVE-2016-9054CRITICAL9.8An exploitable stack-based buffer overflow vulnerability exists in the querying functionality of Aerospike Database Serv...
CVE-2016-9052CRITICAL9.8An exploitable stack-based buffer overflow vulnerability exists in the querying functionality of Aerospike Database Serv...
CVE-2016-10160CRITICAL9.8Off-by-one error in the phar_parse_pharfile function in ext/phar/phar.c in PHP before 5.6.30 and 7.0.x before 7.0.15 all...
CVE-2016-7567CRITICAL9.8Buffer overflow in the SLPFoldWhiteSpace function in common/slp_compare.c in OpenSLP 2.0 allows remote attackers to have...
CVE-2016-3147CRITICAL9.8Buffer overflow in the collector.exe listener of the Landesk Management Suite 10.0.0.271 and earlier allows remote attac...
CVE-2016-8204CRITICAL9.8A Directory Traversal vulnerability in FileReceiveServlet in the Brocade Network Advisor versions released prior to and ...
CVE-2016-2090CRITICAL9.8Off-by-one vulnerability in the fgetwln function in libbsd before 0.8.2 allows attackers to have unspecified impact via ...
CVE-2016-10141CRITICAL9.8An integer overflow vulnerability was observed in the regemit function in regexp.c in Artifex Software, Inc. MuJS before...
CVE-2016-7480CRITICAL9.8The SplObjectStorage unserialize implementation in ext/spl/spl_observer.c in PHP before 7.0.12 does not verify that a ke...
CVE-2016-8705CRITICAL9.8Multiple integer overflows in process_bin_update function in Memcached, which is responsible for processing multiple com...
CVE-2016-8704CRITICAL9.8An integer overflow in the process_bin_append_prepend function in Memcached, which is responsible for processing multipl...
CVE-2016-10045CRITICAL9.8The isMail transport in PHPMailer before 5.2.20 might allow remote attackers to pass extra parameters to the mail comman...
CVE-2016-10033CRITICAL9.8The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra para...
CVE-2016-7886CRITICAL9.8Adobe InDesign version 11.4.1 and earlier, Adobe InDesign Server 11.0.0 and earlier have an exploitable memory corruptio...
CVE-2016-7951CRITICAL9.8Multiple integer overflows in X.org libXtst before 1.2.3 allow remote X servers to trigger out-of-bounds memory access o...
CVE-2016-6520CRITICAL9.1Buffer overflow in MagickCore/enhance.c in ImageMagick before 7.0.2-7 allows remote attackers to have unspecified impact...
CVE-2016-9427CRITICAL9.8Integer overflow vulnerability in bdwgc before 2016-09-27 allows attackers to cause client of bdwgc denial of service (h...
CVE-2016-6829CRITICAL9.8The trove service user in (1) Openstack deployment (aka crowbar-openstack) and (2) Trove Barclamp (aka barclamp-trove an...
CVE-2016-9157CRITICAL9.8A vulnerability in Siemens SICAM PAS (all versions before V8.09) could allow a remote attacker to cause a Denial of Serv...
CVE-2016-9555CRITICAL9.8The sctp_sf_ootb function in net/sctp/sm_statefuns.c in the Linux kernel before 4.8.8 lacks chunk-length checking for th...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now