CVE.report search for "CVE-2016-9156"

Listed below are 50 relevant search results for "CVE-2016-9156" based on Vendor, Software, and CVE description

These results are gathered from attempted matches with listed vendor and software data, as well as a keyword search in the description of all known CVEs.

If you notice a "Not Listed" in either the vendor or software columns, the underlying source record does not currently include normalized affected-product data.

Search Results

CVE ID Vendor Software Description
CVE-2026-37536miaofng/uds-c commit e506334e270d77b20c0bc259ac6c7d8c9b702b7a (2016-10-05) contains a stack buffer overflow in send_diagnosti...
CVE-2026-34907Wirtualna Uczelnia is vulnerable to Reflected Cross‑Site Scripting (XSS) due to insecure handling of the locale parameter a...
CVE-2026-34906Server-Side Template Injection (SSTI) in Wirtualna Uczelnia allows an unauthenticated attacker to perform Remote Code Executi...
CVE-2026-25550Seagull Software BarTender 2010, 2016, and 2019 contain an unauthenticated remote code execution vulnerability in the .NET Re...
CVE-2025-70099A NULL pointer dereference in the ext4_dir_en_get_name_len function in include/ext4_dir.h of lwext4 1.0.0 allows attackers to...
CVE-2025-31735Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in C. Johnson Footnotes fo...
CVE-2025-15638AtrodoNetNet::Dropbear versions before 0.14 for Perl contains a vulnerable version of libtomcrypt. Net::Dropbear versions before 0.14...
CVE-2024-47745DebianDebian LinuxIn the Linux kernel, the following vulnerability has been resolved: mm: call the security_mmap_file() LSM hook in remap_file...
CVE-2024-36484LinuxLinux KernelIn the Linux kernel, the following vulnerability has been resolved: net: relax socket state check at accept time. Christoph...
CVE-2023-47174ThorntechSftp GatewayThorn SFTP gateway 3.4.x before 3.4.4 uses Pivotal Spring Framework for Java deserialization of untrusted data, which is not ...
CVE-2023-38689Rs485LogisticspipesLogistics Pipes is a modification (a.k.a. mod) for the computer game Minecraft Java Edition. The mod used Java's `ObjectInput...
CVE-2023-38408FedoraprojectFedoraThe PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote cod...
CVE-2023-32219MazdaMazdaA Mazda model (2015-2016) can be unlocked via an unspecified method.
CVE-2023-22494** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-20018. Reason: This candidate is a reservation duplicate ...
CVE-2023-0426AbbAc700f ABB is aware of vulnerabilities in the product versions listed below. An update is available that resolves the reported vuln...
CVE-2023-0425AbbAc700f ABB is aware of vulnerabilities in the product versions listed below. An update is available that resolves the reported vuln...
CVE-2023-0296RedhatOpenshiftThe Birthday attack against 64-bit block ciphers flaw (CVE-2016-2183) was reported for the health checks port (9979) on etcd ...
CVE-2022-43705Botan ProjectBotanIn Botan before 2.19.3, it is possible to forge OCSP responses due to a certificate verification error. This issue was introd...
CVE-2022-42973MicrosoftWindows 10A CWE-798: Use of Hard-coded Credentials vulnerability exists that could cause local privilege escalation when local attacker...
CVE-2022-42972MicrosoftWindows 10A CWE-732: Incorrect Permission Assignment for Critical Resource vulnerability exists that could cause local privilege escala...
CVE-2022-42971MicrosoftWindows 10A CWE-434: Unrestricted Upload of File with Dangerous Type vulnerability exists that could cause remote code execution when t...
CVE-2022-42970MicrosoftWindows 10A CWE-306: Missing Authentication for Critical Function The software does not perform any authentication for functionality th...
CVE-2022-32159InfogamiInfogamiIn openlibrary versions deploy-2016-07-0 through deploy-2021-12-22 are vulnerable to Stored XSS.
CVE-2022-31588Testplatform ProjectTestplatformThe zippies/testplatform repository through 2016-07-19 on GitHub allows absolute path traversal because the Flask send_file f...
CVE-2022-31557Golem ProjectGolemThe seveas/golem repository through 2016-05-17 on GitHub allows absolute path traversal because the Flask send_file function ...
CVE-2022-31532Travel Blahg ProjectTravel BlahgThe dankolbman/travel_blahg repository through 2016-01-16 on GitHub allows absolute path traversal because the Flask send_fil...
CVE-2022-23081OpenlibraryOpenlibraryIn openlibrary versions deploy-2016-07-0 through deploy-2021-12-22 are vulnerable to Reflected XSS.
CVE-2021-39365DebianDebian LinuxIn GNOME grilo though 0.3.13, grl-net-wc.c does not enable TLS certificate verification on the SoupSessionAsync objects it cr...
CVE-2021-39361GnomeEvolution-rssIn GNOME evolution-rss through 0.3.96, network-soup.c does not enable TLS certificate verification on the SoupSessionSync obj...
CVE-2021-39360FedoraprojectFedoraIn GNOME libzapojit through 0.0.3, zpj-skydrive.c does not enable TLS certificate verification on the SoupSessionSync objects...
CVE-2021-39359FedoraprojectFedoraIn GNOME libgda through 6.0.0, gda-web-provider.c does not enable TLS certificate verification on the SoupSessionSync objects...
CVE-2021-39358FedoraprojectFedoraIn GNOME libgfbgraph through 0.2.4, gfbgraph-photo.c does not enable TLS certificate verification on the SoupSessionSync obje...
CVE-2021-31607FedoraprojectFedoraIn SaltStack Salt 2016.9 through 3002.6, a command injection vulnerability exists in the snapper module that allows for local...
CVE-2021-21087AdobeColdfusionAdobe Coldfusion versions 2016 (update 16 and earlier), 2018 (update 10 and earlier) and 2021.0.0.323925 are affected by an I...
CVE-2021-20318RedhatJboss Enterprise Application PlatformThe HornetQ component of Artemis in EAP 7 was not updated with the fix for CVE-2016-4978. A remote attacker could use this fl...
CVE-2021-4160DebianDebian LinuxThere is a carry propagation bug in the MIPS32 and MIPS64 squaring procedure. Many EC algorithms are affected, including some...
CVE-2021-3396OpennmsHorizonOpenNMS Meridian 2016, 2017, 2018 before 2018.1.25, 2019 before 2019.1.16, and 2020 before 2020.1.5, Horizon 1.2 through 27.0...
CVE-2021-3351OpenplcprojectOpenplcOpenPLC runtime V3 through 2016-03-14 allows stored XSS via the Device Name to the web server's Add New Device page.
CVE-2020-29573GnuGlibcsysdeps/i386/ldbl2mpn.c in the GNU C Library (aka glibc or libc6) before 2.23 on x86 targets has a stack-based buffer overflo...
CVE-2020-27618DebianDebian LinuxThe iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid multi-byte input seque...
CVE-2020-19229JeesiteJeesiteJeesite 1.2.7 uses the apache shiro version 1.2.3 affected by CVE-2016-4437. Because of this version of the java deserializat...
CVE-2020-14300DockerDockerThe docker packages version docker-1.13.1-108.git4ef4b30.el7 as released for Red Hat Enterprise Linux 7 Extras via RHBA-2020:...
CVE-2020-14203IbiWebfocus Business IntelligenceWebFOCUS Business Intelligence 8.0 (SP6) allows a Cross-Site Request Forgery (CSRF) attack against administrative users withi...
CVE-2020-9673AdobeColdfusionAdobe ColdFusion 2016 update 15 and earlier versions, and ColdFusion 2018 update 9 and earlier versions have a dll search-ord...
CVE-2020-9672AdobeColdfusionAdobe ColdFusion 2016 update 15 and earlier versions, and ColdFusion 2018 update 9 and earlier versions have a dll search-ord...
CVE-2020-5551ToyotaDisplay Control UnitToyota 2017 Model Year DCU (Display Control Unit) allows an unauthenticated attacker within Bluetooth range to cause a denial...
CVE-2020-3796AdobeColdfusionColdFusion versions ColdFusion 2016, and ColdFusion 2018 have an improper access control vulnerability. Successful exploitati...
CVE-2020-3794AdobeColdfusionColdFusion versions ColdFusion 2016, and ColdFusion 2018 have a file inclusion vulnerability. Successful exploitation could l...
CVE-2020-3768AdobeColdfusionColdFusion versions ColdFusion 2016, and ColdFusion 2018 have a dll search-order hijacking vulnerability. Successful exploita...
CVE-2020-3767AdobeColdfusionColdFusion versions ColdFusion 2016, and ColdFusion 2018 have an insufficient input validation vulnerability. Successful expl...
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report