CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67580  CVE-2014-0171  Candidate  XML external entity (XXE) vulnerability in StaxXMLFactoryProvider2 in Odata4j, as used in Red Hat JBoss Data Virtualization before 6.0.0 patch 4, allows remote attackers to read arbitrary files via a crafted request to a REST endpoint.  Assigned (20131203)  None (candidate not yet proposed)    View
83941  CVE-2015-6664  Candidate  XML external entity (XXE) vulnerability in the application import functionality in SAP Mobile Platform 2.3 allows remote attackers to read arbitrary files and possibly have other unspecified impact via crafted XML data, aka SAP Security Note 2152227.  Assigned (20150824)  None (candidate not yet proposed)    View
67087  CVE-2013-7140  Candidate  XML External Entity (XXE) vulnerability in the CalDAV interface in Open-Xchange (OX) AppSuite 7.4.1 and earlier allows remote authenticated users to read portions of arbitrary files via vectors related to the SAX builder and the WebDAV interface. NOTE: this issue has been labeled as both absolute path traversal and XXE, but the root cause may be XXE, since XXE can be exploited to conduct absolute path traversal and other attacks.  Assigned (20131218)  None (candidate not yet proposed)    View
90793  CVE-2016-3974  Candidate  XML external entity (XXE) vulnerability in the Configuration Wizard in SAP NetWeaver Java AS 7.1 through 7.5 allows remote attackers to cause a denial of service, conduct SMB Relay attacks, or access arbitrary files via a crafted XML request to _tc~monitoring~webservice~web/ServerNodesWSService, aka SAP Security Note 2235994.  Assigned (20160407)  None (candidate not yet proposed)    View
82596  CVE-2015-5319  Candidate  XML external entity (XXE) vulnerability in the create-job CLI command in Jenkins before 1.638 and LTS before 1.625.2 allows remote attackers to read arbitrary files via a crafted job configuration that is then used in an "XML-aware tool," as demonstrated by get-job and update-job.  Assigned (20150701)  None (candidate not yet proposed)    View

Page 20870 of 20943, showing 5 records out of 104715 total, starting on record 104346, ending on 104350

Actions