2016 CVE Vulnerabilities

10,645 CVEs published in 2016.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2016-11077LOW2.7An issue was discovered in Mattermost Server before 3.0.0. It has a superfluous API in which the System Admin can change...
CVE-2016-11027LOW2.4An issue was discovered on Samsung mobile devices with M(6.0) software. In the Shade Locked state, a physically proximat...
CVE-2016-1544LOW3.3nghttp2 before 1.7.1 allows remote attackers to cause a denial of service (memory exhaustion).
CVE-2016-6586LOW3.7A security bypass vulnerability exists in Symantec Norton Mobile Security for Android before 3.16, which could let a mal...
CVE-2016-4980LOW2.5A password generation weakness exists in xquest through 2016-06-13.
CVE-2016-4983LOW3.3A postinstall script in the dovecot rpm allows local users to read the contents of newly created SSL/TLS key files.
CVE-2016-1000002LOW2.4gdm3 3.14.2 and possibly later has an information leak before screen lock
CVE-2016-4455LOW3.3The Subscription Manager package (aka subscription-manager) before 1.17.7-1 for Candlepin uses weak permissions (755) fo...
CVE-2016-9085LOW3.3Multiple integer overflows in libwebp allows attackers to have unspecified impact via unknown vectors.
CVE-2016-8217LOW3.7EMC RSA BSAFE Crypto-J versions prior to 6.2.2 has a PKCS#12 Timing Attack Vulnerability. A possible timing attack could...
CVE-2016-9908LOW3.3Quick Emulator (Qemu) built with the Virtio GPU Device emulator support is vulnerable to an information leakage issue. I...
CVE-2016-1000033LOW3.7Shotwell version 0.22.0 (and possibly other versions) is vulnerable to a TLS/SSL certification validation flaw resulting...
CVE-2016-5429LOW3.7jose-php before 2.2.1 does not use constant-time operations for HMAC comparison, which makes it easier for remote attack...
CVE-2016-0380LOW3.3IBM Sterling Connect:Direct for Unix 4.1.0 before 4.1.0.4 iFix073 and 4.2.0 before 4.2.0.4 iFix003 uses default file per...
CVE-2016-5849LOW2.5Siemens SICAM PAS through 8.07 allows local users to obtain sensitive configuration information by leveraging database s...
CVE-2016-3419LOW3.3Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows local users to affect availability via vectors relate...
CVE-2016-2091LOW3.3The dwarf_read_cie_fde_prefix function in dwarf_frame2.c in libdwarf 20151114 allows attackers to cause a denial of serv...

Check if your code is affected by 2016 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now