CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
94276 | CVE-2016-7456 | Candidate | VMware vSphere Data Protection (VDP) 5.5.x though 6.1.x has an SSH private key with a publicly known password, which makes it easier for remote attackers to obtain login access via an SSH session. | Assigned (20160909) | None (candidate not yet proposed) | View | |
71929 | CVE-2014-4632 | Candidate | VMware vSphere Data Protection (VDP) 5.1, 5.5 before 5.5.9, and 5.8 before 5.8.1 and the proxy client in EMC Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) 6.x and 7.0.x do not properly verify X.509 certificates from vCenter Server SSL servers, which allows man-in-the-middle attackers to spoof servers, and bypass intended backup and restore access restrictions, via a crafted certificate. | Assigned (20140624) | None (candidate not yet proposed) | View | |
94278 | CVE-2016-7458 | Candidate | VMware vSphere Client 5.5 before U3e and 6.0 before U2a allows remote vCenter Server and ESXi instances to read arbitrary files via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. | Assigned (20160909) | None (candidate not yet proposed) | View | |
68504 | CVE-2014-1210 | Candidate | VMware vSphere Client 5.0 before Update 3 and 5.1 before Update 2 does not properly validate X.509 certificates, which allows man-in-the-middle attackers to spoof SSL servers via a crafted certificate. | Assigned (20140107) | None (candidate not yet proposed) | View | |
68503 | CVE-2014-1209 | Candidate | VMware vSphere Client 4.0, 4.1, 5.0 before Update 3, and 5.1 before Update 2 does not properly validate updates to Client files, which allows remote attackers to trigger the downloading and execution of an arbitrary program via unspecified vectors. | Assigned (20140107) | None (candidate not yet proposed) | View |
Page 515 of 20943, showing 5 records out of 104715 total, starting on record 2571, ending on 2575