2016 CVE Vulnerabilities
10,647 CVEs published in 2016.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2016-4829 | — | — | 0.7% | Apr 21, 2017 | DMM Movie Player App for Android before 1.2.1, and DMM Movie Player App for iPhone/iPad before 2.1.3 does not verify SSL... |
| CVE-2016-1194 | — | — | 1.8% | Apr 21, 2017 | Cybozu Garoon before 4.2.1 allows remote attackers to cause a denial of service. |
| CVE-2016-0833 | — | — | 0.6% | Apr 21, 2017 | Android allows users to cause a denial of service. |
| CVE-2016-6368 | — | — | 3.0% | Apr 20, 2017 | A vulnerability in the detection engine parsing of Pragmatic General Multicast (PGM) protocol packets for Cisco Firepowe... |
| CVE-2016-9980 | — | — | 0.6% | Apr 20, 2017 | IBM Curam Social Program Management 5.2, 6.0, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows u... |
| CVE-2016-9979 | — | — | 0.5% | Apr 20, 2017 | IBM Curam Social Program Management 5.2, 6.0, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows u... |
| CVE-2016-9978 | — | — | 0.7% | Apr 20, 2017 | IBM Curam Social Program Management 5.2, 6.0, and 7.0 could allow an authenticated attacker to disclose sensitive inform... |
| CVE-2016-8923 | — | — | 0.7% | Apr 20, 2017 | IBM Curam Social Program Management 5.2, 6.0, and 7.0 contains a vulnerability that would allow an authorized user to ob... |
| CVE-2016-5401 | — | — | 0.6% | Apr 20, 2017 | Cross-site request forgery (CSRF) vulnerability in Red Hat JBoss BRMS and BPMS 6 allows remote attackers to hijack the a... |
| CVE-2016-3734 | — | — | 1.1% | Apr 20, 2017 | Cross-site request forgery (CSRF) vulnerability in markposts.php in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 thr... |
| CVE-2016-3733 | — | — | 1.2% | Apr 20, 2017 | The "restore teacher" feature in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13, an... |
| CVE-2016-3732 | — | — | 1.4% | Apr 20, 2017 | The capability check to access other badges in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 thro... |
| CVE-2016-3731 | — | — | 1.6% | Apr 20, 2017 | Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, and 2.8 through 2.8.11 allows remote attackers to obtain the names of hidde... |
| CVE-2016-3729 | — | — | 1.3% | Apr 20, 2017 | The user editing form in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13, and earlie... |
| CVE-2016-1161 | — | — | 1.0% | Apr 20, 2017 | Cross-site request forgery (CSRF) vulnerability in ManageEngine Password Manager Pro before 8.5 (Build 8500). |
| CVE-2016-7540 | — | — | 2.8% | Apr 20, 2017 | coders/rgf.c in ImageMagick before 6.9.4-10 allows remote attackers to cause a denial of service (assertion failure) by ... |
| CVE-2016-5010 | — | — | 2.1% | Apr 20, 2017 | coders/tiff.c in ImageMagick before 6.9.5-3 allows remote attackers to cause a denial of service (out-of-bounds read) vi... |
| CVE-2016-4862 | — | — | 2.1% | Apr 20, 2017 | Twigmo bundled with CS-Cart 4.3.9 and earlier and Twigmo bundled with CS-Cart Multi-Vendor 4.3.9 and earlier allow remot... |
| CVE-2016-4850 | — | — | 2.2% | Apr 20, 2017 | LINE for Windows before 4.8.3 allows man-in-the-middle attackers to execute arbitrary code. |
| CVE-2016-4844 | — | — | 1.5% | Apr 20, 2017 | Cybozu Mailwise before 5.4.0 allows remote attackers to conduct clickjacking attacks. |
| CVE-2016-4843 | — | — | 1.9% | Apr 20, 2017 | Cybozu Mailwise before 5.4.0 allows remote attackers to obtain sensitive cookie information. |
| CVE-2016-4842 | — | — | 1.6% | Apr 20, 2017 | Cybozu Mailwise before 5.4.0 allows remote attackers to obtain information on when an email is read. |
| CVE-2016-4818 | — | — | 0.9% | Apr 20, 2017 | DMMFX Trade for Android 1.5.0 and earlier, DMMFX DEMO Trade for Android 1.5.0 and earlier, and GAITAMEJAPAN FX Trade for... |
| CVE-2016-1220 | — | — | 1.0% | Apr 20, 2017 | Cybozu Garoon before 4.2.2 does not properly restrict access. |
| CVE-2016-1218 | — | — | 1.5% | Apr 20, 2017 | SQL injection vulnerability in Cybozu Garoon before 4.2.2. |
Check if your code is affected by 2016 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now