CVE List

Id CVE No. Status Description Phase Votes Comments Actions
94276  CVE-2016-7456  Candidate  VMware vSphere Data Protection (VDP) 5.5.x though 6.1.x has an SSH private key with a publicly known password, which makes it easier for remote attackers to obtain login access via an SSH session.  Assigned (20160909)  None (candidate not yet proposed)    View
94277  CVE-2016-7457  Candidate  VMware vRealize Operations (aka vROps) 6.x before 6.4.0 allows remote authenticated users to gain privileges, or halt and remove virtual machines, via unspecified vectors.  Assigned (20160909)  None (candidate not yet proposed)    View
94278  CVE-2016-7458  Candidate  VMware vSphere Client 5.5 before U3e and 6.0 before U2a allows remote vCenter Server and ESXi instances to read arbitrary files via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.  Assigned (20160909)  None (candidate not yet proposed)    View
94279  CVE-2016-7459  Candidate  VMware vCenter Server 5.5 before U3e and 6.0 before U2a allows remote authenticated users to read arbitrary files via a (1) Log Browser, (2) Distributed Switch setup, or (3) Content Library XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.  Assigned (20160909)  None (candidate not yet proposed)    View
94280  CVE-2016-7460  Candidate  The Single Sign-On feature in VMware vCenter Server 5.5 before U3e and 6.0 before U2a and vRealize Automation 6.x before 6.2.5 allows remote attackers to read arbitrary files or cause a denial of service via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.  Assigned (20160909)  None (candidate not yet proposed)    View

Page 18856 of 20943, showing 5 records out of 104715 total, starting on record 94276, ending on 94280

Actions