CVEs from 2016

8,525 normalized CVEs published or assigned in this year.

Total
8,525
critical
critical 1,164
high
high 3,521
medium
medium 3,172
low
low 249
% Critical
13.7%
% with KEV
0.7%
% with exploit
0.9%

Top vendors

Top products

  • phpmyadmin 3,382
  • php 1,748
  • squid 1,549
  • samba 1,093
  • drupal 868
  • firefox 757
  • moodle 700
  • openssl 664
0
KEVHas exploit
Reset
CVE Severity CVSS Risk Published Description Impact
CVE-2016-8347 critical 9.8 9.8 9y ago An issue was discovered in Kabona AB WebDatorCentral (WDC) application prior to Version 3.4.0. WDC does not limit authentication attempts that may allow a brute force attack method.
CVE-2016-8341 critical 9.8 9.8 9y ago An issue was discovered in Ecava IntegraXor Version 5.0.413.0. The Ecava IntegraXor web server has parameters that are vulnerable to SQL injection. If the queries are not sanitized, the host's databa…
CVE-2016-5818 critical 9.8 9.8 9y ago An issue was discovered in Schneider Electric PowerLogic PM8ECC device 2.651 and older. Undocumented hard-coded credentials allow access to the device.
CVE-2016-5815 critical 9.8 9.8 9y ago An issue was discovered on Schneider Electric IONXXXX series power meters ION73XX series, ION75XX series, ION76XX series, ION8650 series, ION8800 series, and PM5XXX series. No authentication is confi…
CVE-2016-8859 critical 9.8 9.8 9y ago Multiple integer overflows in the TRE library and musl libc allow attackers to cause memory corruption via a large number of (1) states or (2) tags, which triggers an out-of-bounds write. debian
CVE-2016-7565 critical 9.8 9.8 9y ago install/index.php in Exponent CMS 2.3.9 allows remote attackers to execute arbitrary commands via shell metacharacters in the sc array parameter.
CVE-2016-5100 critical 9.8 9.8 9y ago Froxlor guessable password reset token php
CVE-2016-2788 critical 9.8 9.8 9y ago MCollective 2.7.0 and 2.8.x before 2.8.9, as used in Puppet Enterprise, allows remote attackers to execute arbitrary code via vectors related to the mco ping command. debian
CVE-2016-5726 critical 9.8 9.8 9y ago Packages.php in Simple Machines Forum (SMF) 2.1 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via the themechanges array parameter.
CVE-2016-2148 critical 9.8 9.8 9y ago Heap-based buffer overflow in the DHCP client (udhcpc) in BusyBox before 1.25.0 allows remote attackers to have unspecified impact via vectors involving OPTION_6RD parsing. susedebianubuntu
CVE-2016-10192 critical 9.8 9.8 9y ago Heap-based buffer overflow in ffserver.c in FFmpeg before 2.8.10, 3.0.x before 3.0.5, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 allows remote attackers to execute arbitrary code by leveraging failur… debian
CVE-2016-10191 critical 9.8 9.8 9y ago Heap-based buffer overflow in libavformat/rtmppkt.c in FFmpeg before 2.8.10, 3.0.x before 3.0.5, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 allows remote attackers to execute arbitrary code by levera… debian
CVE-2016-10190 critical 9.8 9.8 9y ago Heap-based buffer overflow in libavformat/http.c in FFmpeg before 2.8.10, 3.0.x before 3.0.5, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 allows remote web servers to execute arbitrary code via a nega… debian
CVE-2016-9005 critical 9.8 9.8 9y ago IBM System Storage TS3100-TS3200 Tape Library could allow an unauthenticated user with access to the company network, to change a user's password and gain remote access to the system. ibm
CVE-2016-8954 critical 9.8 9.8 9y ago IBM dashDB Local uses hard-coded credentials that could allow a remote attacker to gain access to the Docker container or database. ibm
CVE-2016-8418 critical 9.8 9.8 9y ago A remote code execution vulnerability in the Qualcomm crypto driver could enable a remote attacker to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to t…
CVE-2016-6667 critical 9.8 9.8 9y ago NetApp OnCommand Unified Manager for Clustered Data ONTAP 6.3 through 6.4P1 contain a default privileged account, which allows remote attackers to execute arbitrary code via unspecified vectors.
CVE-2016-5711 critical 9.8 9.8 9y ago NetApp Virtual Storage Console for VMware vSphere before 6.2.1 uses a non-unique certificate, which allows remote attackers to conduct man-in-the-middle attacks via unspecified vectors.
CVE-2016-2403 critical 9.8 9.8 9y ago Symfony before 2.8.6 and 3.x before 3.0.6 allows remote attackers to bypass authentication by logging in with an empty password and valid username, which triggers an unauthenticated bind. debianphp
CVE-2016-7400 critical 9.8 9.8 9y ago Multiple SQL injection vulnerabilities in Exponent CMS before 2.4.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in an activate_address address controller action,…
CVE-2016-6199 critical 9.8 9.8 9y ago ObjectSocketWrapper.java in Gradle 2.12 allows remote attackers to execute arbitrary code via a crafted serialized object. debian
CVE-2016-6175 critical 9.8 9.8 9y ago Eval injection vulnerability in php-gettext 1.0.12 and earlier allows remote attackers to execute arbitrary PHP code via a crafted plural forms header. debian
CVE-2016-7447 critical 9.8 9.8 9y ago Heap-based buffer overflow in the EscapeParenthesis function in GraphicsMagick before 1.3.25 allows remote attackers to have unspecified impact via unknown vectors. susedebian
CVE-2016-7446 critical 9.8 9.8 9y ago Buffer overflow in the MVG and SVG rendering code in GraphicsMagick 1.3.24 allows remote attackers to have unspecified impact via unknown vectors. Note: This vulnerability exists due to an incomplete… susedebian
CVE-2016-10150 critical 9.8 9.8 9y ago Use-after-free vulnerability in the kvm_ioctl_create_device function in virt/kvm/kvm_main.c in the Linux kernel before 4.8.13 allows host OS users to cause a denial of service (host OS crash) or poss… susedebianlinux
CVE-2016-10098 critical 9.8 9.8 9y ago An issue was discovered on SendQuick Entera and Avera devices before 2HF16. Multiple Command Injection vulnerabilities allow attackers to execute arbitrary system commands.
CVE-2016-6095 critical 9.8 9.8 9y ago IBM Tivoli Key Lifecycle Manager 2.5 and 2.6 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. ibm
CVE-2016-6090 critical 9.8 9.8 9y ago IBM WebSphere Commerce contains an unspecified vulnerability that could allow disclosure of user personal data, performing of unauthorized administrative operations, and potentially causing a denial … ibm
CVE-2016-5964 critical 9.8 9.8 9y ago IBM Security Privileged Identity Manager Virtual Appliance version 2.0.2 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. ibm
CVE-2016-10164 critical 9.8 9.8 9y ago Multiple integer overflows in libXpm before 3.5.12, when a program requests parsing XPM extensions on a 64-bit platform, allow remote attackers to cause a denial of service (out-of-bounds write) or e… susedebian
CVE-2016-9420 critical 9.8 9.8 9y ago MyBB (aka MyBulletinBoard) before 1.8.8 and MyBB Merge System before 1.8.8 allow remote attackers to have unspecified impact via vectors related to "loose comparison false positives."
CVE-2016-9416 critical 9.8 9.8 9y ago SQL injection vulnerability in the users data handler in MyBB (aka MyBulletinBoard) before 1.8.8 and MyBB Merge System before 1.8.8 allows remote attackers to execute arbitrary SQL commands via unspe…
CVE-2016-9412 critical 9.8 9.8 9y ago MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 allow attackers to have unspecified impact via vectors related to low adminsid and sid entropy.
CVE-2016-9403 critical 9.8 9.8 9y ago newreply.php in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 allows remote attackers to have unspecified impact by leveraging a missing permission check.
CVE-2016-9402 critical 9.8 9.8 9y ago SQL injection vulnerability in the moderation tool in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to execute arbitrary SQL commands via uns…
CVE-2016-9132 critical 9.8 9.8 10y ago In Botan 1.8.0 through 1.11.33, when decoding BER data an integer overflow could occur, which would cause an incorrect length field to be computed. Some API callers may use the returned (incorrect an… suse
CVE-2016-6604 critical 9.8 9.8 10y ago NULL pointer dereference in Samsung Exynos fimg2d driver for Android L(5.0/5.1) and M(6.0) allows attackers to have unspecified impact via unknown vectors. The Samsung ID is SVE-2016-6382.
CVE-2016-10182 critical 9.8 9.8 10y ago An issue was discovered on the D-Link DWR-932B router. qmiweb allows command injection with ` characters.
CVE-2016-10178 critical 9.8 9.8 10y ago An issue was discovered on the D-Link DWR-932B router. HELODBG on port 39889 (UDP) launches the "/sbin/telnetd -l /bin/sh" command.
CVE-2016-10177 critical 9.8 9.8 10y ago An issue was discovered on the D-Link DWR-932B router. Undocumented TELNET and SSH services provide logins to admin with the password admin and root with the password 1234.
CVE-2016-10176 critical 9.8 9.8 10y ago The NETGEAR WNR2000v5 router allows an administrator to perform sensitive actions by invoking the apply.cgi URL on the web server of the device. This special URL is handled by the embedded web server…
CVE-2016-10175 critical 9.8 9.8 10y ago The NETGEAR WNR2000v5 router leaks its serial number when performing a request to the /BRS_netgear_success.html URI. This serial number allows a user to obtain the administrator username and password…
CVE-2016-8575 critical 9.8 9.8 10y ago The Q.933 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:q933_print(), a different vulnerability than CVE-2017-5482. archsusedebian
CVE-2016-8574 critical 9.8 9.8 10y ago The FRF.15 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:frf15_print(). susearchdebian
CVE-2016-7993 critical 9.8 9.8 10y ago A bug in util-print.c:relts_print() in tcpdump before 4.9.0 could cause a buffer overflow in multiple protocol parsers (DNS, DVMRP, HSRP, IGMP, lightweight resolver protocol, PIM). susearchdebian
CVE-2016-7992 critical 9.8 9.8 10y ago The Classical IP over ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-cip.c:cip_if_print(). archsusedebian
CVE-2016-7986 critical 9.8 9.8 10y ago The GeoNetworking parser in tcpdump before 4.9.0 has a buffer overflow in print-geonet.c, multiple functions. archsusedebian
CVE-2016-7985 critical 9.8 9.8 10y ago The CALM FAST parser in tcpdump before 4.9.0 has a buffer overflow in print-calm-fast.c:calm_fast_print(). susearchdebian
CVE-2016-7984 critical 9.8 9.8 10y ago The TFTP parser in tcpdump before 4.9.0 has a buffer overflow in print-tftp.c:tftp_print(). susearchdebian
CVE-2016-7983 critical 9.8 9.8 10y ago The BOOTP parser in tcpdump before 4.9.0 has a buffer overflow in print-bootp.c:bootp_print(). archsusedebian
CVE-2016-7975 critical 9.8 9.8 10y ago The TCP parser in tcpdump before 4.9.0 has a buffer overflow in print-tcp.c:tcp_print(). archsusedebian
CVE-2016-7974 critical 9.8 9.8 10y ago The IP parser in tcpdump before 4.9.0 has a buffer overflow in print-ip.c, multiple functions. archsusedebian
CVE-2016-7973 critical 9.8 9.8 10y ago The AppleTalk parser in tcpdump before 4.9.0 has a buffer overflow in print-atalk.c, multiple functions. archsusedebian
CVE-2016-7940 critical 9.8 9.8 10y ago The STP parser in tcpdump before 4.9.0 has a buffer overflow in print-stp.c, multiple functions. susearchdebian
CVE-2016-7939 critical 9.8 9.8 10y ago The GRE parser in tcpdump before 4.9.0 has a buffer overflow in print-gre.c, multiple functions. archsusedebian
CVE-2016-7938 critical 9.8 9.8 10y ago The ZeroMQ parser in tcpdump before 4.9.0 has an integer overflow in print-zeromq.c:zmtp1_print_frame(). archsusedebian
CVE-2016-7937 critical 9.8 9.8 10y ago The VAT parser in tcpdump before 4.9.0 has a buffer overflow in print-udp.c:vat_print(). susearchdebian
CVE-2016-7936 critical 9.8 9.8 10y ago The UDP parser in tcpdump before 4.9.0 has a buffer overflow in print-udp.c:udp_print(). archsusedebian
CVE-2016-7935 critical 9.8 9.8 10y ago The RTP parser in tcpdump before 4.9.0 has a buffer overflow in print-udp.c:rtp_print(). archsusedebian
CVE-2016-7934 critical 9.8 9.8 10y ago The RTCP parser in tcpdump before 4.9.0 has a buffer overflow in print-udp.c:rtcp_print(). archsusedebian
CVE-2016-7933 critical 9.8 9.8 10y ago The PPP parser in tcpdump before 4.9.0 has a buffer overflow in print-ppp.c:ppp_hdlc_if_print(). susearchdebian
CVE-2016-7932 critical 9.8 9.8 10y ago The PIM parser in tcpdump before 4.9.0 has a buffer overflow in print-pim.c:pimv2_check_checksum(). archsusedebian
CVE-2016-7931 critical 9.8 9.8 10y ago The MPLS parser in tcpdump before 4.9.0 has a buffer overflow in print-mpls.c:mpls_print(). susearchdebian
CVE-2016-7930 critical 9.8 9.8 10y ago The LLC/SNAP parser in tcpdump before 4.9.0 has a buffer overflow in print-llc.c:llc_print(). archsusedebian
CVE-2016-7929 critical 9.8 9.8 10y ago The Juniper PPPoE ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-juniper.c:juniper_parse_header(). archsusedebian
CVE-2016-7928 critical 9.8 9.8 10y ago The IPComp parser in tcpdump before 4.9.0 has a buffer overflow in print-ipcomp.c:ipcomp_print(). susearchdebian
CVE-2016-7927 critical 9.8 9.8 10y ago The IEEE 802.11 parser in tcpdump before 4.9.0 has a buffer overflow in print-802_11.c:ieee802_11_radio_print(). susearchdebian
CVE-2016-7926 critical 9.8 9.8 10y ago The Ethernet parser in tcpdump before 4.9.0 has a buffer overflow in print-ether.c:ethertype_print(). susearchdebian
CVE-2016-7925 critical 9.8 9.8 10y ago The compressed SLIP parser in tcpdump before 4.9.0 has a buffer overflow in print-sl.c:sl_if_print(). archsusedebian
CVE-2016-7924 critical 9.8 9.8 10y ago The ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-atm.c:oam_print(). susearchdebian
CVE-2016-7923 critical 9.8 9.8 10y ago The ARP parser in tcpdump before 4.9.0 has a buffer overflow in print-arp.c:arp_print(). susearchdebian
CVE-2016-7922 critical 9.8 9.8 10y ago The AH parser in tcpdump before 4.9.0 has a buffer overflow in print-ah.c:ah_print(). susearchdebian
CVE-2016-9636 critical 9.8 9.8 10y ago Heap-based buffer overflow in the flx_decode_delta_fli function in gst/flx/gstflxdec.c in the FLIC decoder in GStreamer before 1.10.2 allows remote attackers to execute arbitrary code or cause a deni… susedebianredhat
CVE-2016-9635 critical 9.8 9.8 10y ago Heap-based buffer overflow in the flx_decode_delta_fli function in gst/flx/gstflxdec.c in the FLIC decoder in GStreamer before 1.10.2 allows remote attackers to execute arbitrary code or cause a deni… susedebianredhat
CVE-2016-9634 critical 9.8 9.8 10y ago Heap-based buffer overflow in the flx_decode_delta_fli function in gst/flx/gstflxdec.c in the FLIC decoder in GStreamer before 1.10.2 allows remote attackers to execute arbitrary code or cause a deni… susedebianredhat
CVE-2016-8411 critical 9.8 9.8 10y ago Buffer overflow vulnerability while processing QMI QOS TLVs. Product: Android. Versions: versions that have qmi_qos_srvc.c. Android ID: 31805216. References: QC CR#912775.
CVE-2016-9054 critical 9.8 9.8 10y ago An exploitable stack-based buffer overflow vulnerability exists in the querying functionality of Aerospike Database Server 3.10.0.3. A specially crafted packet can cause a stack-based buffer overflow…
CVE-2016-9052 critical 9.8 9.8 10y ago An exploitable stack-based buffer overflow vulnerability exists in the querying functionality of Aerospike Database Server 3.10.0.3. A specially crafted packet can cause a stack-based buffer overflow…
CVE-2016-6912 critical 9.8 9.8 10y ago Double free vulnerability in the gdImageWebPtr function in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have unspecified impact via large width and height values. susedebian
CVE-2016-9307 critical 9.8 9.8 10y ago Multiple buffer overflows in the Autodesk FBX-SDK before 2017.1 can allow attackers to execute arbitrary code when reading or converting malformed 3DS format files.
CVE-2016-9306 critical 9.8 9.8 10y ago Multiple buffer overflows in the Autodesk FBX-SDK before 2017.1 can allow attackers to execute arbitrary code when reading or converting malformed DAE format files.
CVE-2016-9305 critical 9.8 9.8 10y ago Improper handling in the Autodesk FBX-SDK before 2017.1 of type mismatches and previously deleted objects related to reading and converting malformed FBX format files can allow attackers to gain acce…
CVE-2016-9303 critical 9.8 9.8 10y ago Multiple buffer overflows in the Autodesk FBX-SDK before 2017.1 can allow attackers to execute arbitrary code or cause an infinite loop condition when reading or converting malformed FBX format files.
CVE-2016-10160 critical 9.8 9.8 10y ago Off-by-one error in the phar_parse_pharfile function in ext/phar/phar.c in PHP before 5.6.30 and 7.0.x before 7.0.15 allows remote attackers to cause a denial of service (memory corruption) or possib… susedebianphp
CVE-2016-9081 critical 9.8 9.8 10y ago Joomla! 3.4.4 through 3.6.3 allows attackers to reset username, password, and user group assignments and possibly perform other user account modifications via unspecified vectors. joomla
CVE-2016-7567 critical 9.8 9.8 10y ago Buffer overflow in the SLPFoldWhiteSpace function in common/slp_compare.c in OpenSLP 2.0 allows remote attackers to have unspecified impact via a crafted string. suse
CVE-2016-7036 critical 9.8 9.8 10y ago python-jose before 1.3.2 allows attackers to have unspecified impact by leveraging failure to use a constant time comparison for HMAC keys. debianpython
CVE-2016-6603 critical 9.8 9.8 10y ago ZOHO WebNMS Framework 5.2 and 5.2 SP1 allows remote attackers to bypass authentication and impersonate arbitrary users via the UserName HTTP header.
CVE-2016-6602 critical 9.8 9.8 10y ago ZOHO WebNMS Framework 5.2 and 5.2 SP1 use a weak obfuscation algorithm to store passwords, which allows context-dependent attackers to obtain cleartext passwords by leveraging access to WEB-INF/conf/…
CVE-2016-6600 critical 9.8 9.8 10y ago Directory traversal vulnerability in the file upload functionality in ZOHO WebNMS Framework 5.2 and 5.2 SP1 allows remote attackers to upload and execute arbitrary JSP files via a .. (dot dot) in the…
CVE-2016-6517 critical 9.8 9.8 10y ago Directory traversal vulnerability in Liferay 5.1.0 allows remote attackers to have unspecified impact via a %2E%2E (encoded dot dot) in the minifierBundleDir parameter to barebone.jsp.
CVE-2016-6164 critical 9.8 9.8 10y ago Integer overflow in the mov_build_index function in libavformat/mov.c in FFmpeg before 2.8.8, 3.0.x before 3.0.3 and 3.1.x before 3.1.1 allows remote attackers to have unspecified impact via vectors … debian
CVE-2016-5873 critical 9.8 9.8 10y ago Buffer overflow in the HTTP URL parsing functions in pecl_http before 3.0.1 might allow remote attackers to execute arbitrary code via non-printable characters in a URL. debianphp
CVE-2016-5742 critical 9.8 9.8 10y ago SQL injection vulnerability in the XML-RPC interface in Movable Type Pro and Advanced 6.x before 6.1.3 and 6.2.x before 6.2.6 and Movable Type Open Source 5.2.13 and earlier allows remote attackers t…
CVE-2016-4010 critical 9.8 9.8 10y ago Magento CE and EE before 2.0.6 allows remote attackers to conduct PHP objection injection attacks and execute arbitrary PHP code via crafted serialized shopping cart data.
CVE-2016-3177 critical 9.8 9.8 10y ago Multiple use-after-free and double-free vulnerabilities in gifcolor.c in GIFLIB 5.1.2 have unspecified impact and attack vectors. debian
CVE-2016-3147 critical 9.8 9.8 10y ago Buffer overflow in the collector.exe listener of the Landesk Management Suite 10.0.0.271 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a lar…
CVE-2016-2783 critical 9.8 9.8 10y ago Avaya Fabric Connect Virtual Services Platform (VSP) Operating System Software (VOSS) before 4.2.3.0 and 5.x before 5.0.1.0 does not properly handle VLAN and I-SIS indexes, which allows remote attack…
CVE-2016-2242 critical 9.8 9.8 10y ago Exponent CMS 2.x before 2.3.7 Patch 3 allows remote attackers to execute arbitrary code via the sc parameter to install/index.php.
CVE-2016-1925 critical 9.8 9.8 10y ago Integer underflow in header.c in lha allows remote attackers to have unspecified impact via a large header size value for the (1) level0 or (2) level1 header in a lha archive, which triggers a buffer… suse