2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-10374 | MEDIUM | 5.5 | 0.3% | May 17, 2017 | perltidy through 20160302, as used by perlcritic, check-all-the-things, and other software, relies on the current workin... |
| CVE-2016-3403 | — | — | 1.4% | May 17, 2017 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Admin Console in Zimbra Collaboration before 8.6.0 Pat... |
| CVE-2016-10372 | — | — | 81.9% | May 16, 2017 | The Eir D1000 modem does not properly restrict the TR-064 protocol, which allows remote attackers to execute arbitrary c... |
| CVE-2016-10242 | — | — | 0.4% | May 16, 2017 | A time-of-check time-of-use race condition could potentially exist in the secure file system in all Android releases fro... |
| CVE-2016-10239 | — | — | 0.7% | May 16, 2017 | In TrustZone access control policy may potentially be bypassed in all Android releases from CAF using the Linux kernel d... |
| CVE-2016-10238 | — | — | 0.6% | May 16, 2017 | In QSEE in all Android releases from CAF using the Linux kernel access control may potentially be bypassed due to a page... |
| CVE-2016-10237 | — | — | 0.6% | May 16, 2017 | If shared content protection memory were passed as the secure camera memory buffer by the HLOS to a trusted application ... |
| CVE-2016-9750 | — | — | 0.8% | May 15, 2017 | IBM QRadar 7.2 and 7.3 stores user credentials in plain in clear text which can be read by an authenticated user. IBM X-... |
| CVE-2016-9735 | — | — | 0.7% | May 15, 2017 | IBM Jazz Foundation could allow an authenticated user to obtain sensitive information from stack traces. IBM X-Force ID:... |
| CVE-2016-5979 | — | — | 0.8% | May 15, 2017 | IBM Distributed Marketing 8.6, 9.0, and 10.0 could allow a privileged authenticated user to create an instance that gets... |
| CVE-2016-8741 | HIGH | 7.5 | 6.2% | May 15, 2017 | The Apache Qpid Broker for Java can be configured to use different so called AuthenticationProviders to handle user auth... |
| CVE-2016-10331 | — | — | 2.2% | May 12, 2017 | Directory traversal vulnerability in download.php in Synology Photo Station before 6.5.3-3226 allows remote attackers to... |
| CVE-2016-10330 | — | — | 0.7% | May 12, 2017 | Directory traversal vulnerability in synophoto_dsm_user, a SUID program, as used in Synology Photo Station before 6.5.3-... |
| CVE-2016-10329 | — | — | 40.4% | May 12, 2017 | Command injection vulnerability in login.php in Synology Photo Station before 6.5.3-3226 allows remote attackers to exec... |
| CVE-2016-4887 | — | — | 0.9% | May 12, 2017 | Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Uploader version 3.0.10 and earlier allows remote att... |
| CVE-2016-4886 | — | — | 0.9% | May 12, 2017 | Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Mail version 3.0.10 and earlier allows remote attacke... |
| CVE-2016-4885 | — | — | 0.9% | May 12, 2017 | Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Feed version 3.0.10 and earlier allows remote attacke... |
| CVE-2016-4884 | — | — | 0.9% | May 12, 2017 | Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Blog version 3.0.10 and earlier allows remote attacke... |
| CVE-2016-4883 | — | — | 0.9% | May 12, 2017 | Cross-site scripting vulnerability in baserCMS version 3.0.10 and earlier allows remote attackers to inject arbitrary we... |
| CVE-2016-4882 | — | — | 0.9% | May 12, 2017 | Cross-site request forgery (CSRF) vulnerability in baserCMS version 3.0.10 and earlier allows remote attackers to hijack... |
| CVE-2016-4881 | — | — | 0.9% | May 12, 2017 | Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Blog version 3.0.10 and earlier allows remote attacke... |
| CVE-2016-4880 | — | — | 0.9% | May 12, 2017 | Cross-site scripting vulnerability in baserCMS plugin Blog version 3.0.10 and earlier allows remote authenticated attack... |
| CVE-2016-4879 | HIGH | 8.8 | 0.9% | May 12, 2017 | Cross-site request forgery (CSRF) vulnerability in baserCMS plugin Mail version 3.0.10 and earlier allows remote attacke... |
| CVE-2016-4878 | — | — | 0.9% | May 12, 2017 | Cross-site request forgery (CSRF) vulnerability in baserCMS version 3.0.10 and earlier allows remote attackers to hijack... |
| CVE-2016-4877 | MEDIUM | 5.4 | 0.9% | May 12, 2017 | Cross-site scripting vulnerability in baserCMS plugin Mail version 3.0.10 and earlier allows remote authenticated attack... |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now