CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
59568 | CVE-2012-6325 | Candidate | VMware vCenter Server Appliance (vCSA) 5.0 before Update 2 does not properly parse XML documents, which allows remote authenticated users to read arbitrary files via unspecified vectors. | Assigned (20121210) | None (candidate not yet proposed) | View | |
94279 | CVE-2016-7459 | Candidate | VMware vCenter Server 5.5 before U3e and 6.0 before U2a allows remote authenticated users to read arbitrary files via a (1) Log Browser, (2) Distributed Switch setup, or (3) Content Library XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. | Assigned (20160909) | None (candidate not yet proposed) | View | |
84209 | CVE-2015-6932 | Candidate | VMware vCenter Server 5.5 before u3 and 6.0 before u1 does not verify X.509 certificates from TLS LDAP servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20150914) | None (candidate not yet proposed) | View | |
63054 | CVE-2013-3107 | Candidate | VMware vCenter Server 5.1 before Update 1, when anonymous LDAP binding for Active Directory is enabled, allows remote attackers to bypass authentication by providing a valid username in conjunction with an empty password. | Assigned (20130417) | None (candidate not yet proposed) | View | |
59569 | CVE-2012-6326 | Candidate | VMware vCenter Server 4.1 before Update 3 and 5.0 before Update 2, and vCSA 5.0 before Update 2, allows remote attackers to cause a denial of service (disk consumption) via vectors that trigger large log entries. | Assigned (20121210) | None (candidate not yet proposed) | View |
Page 518 of 20943, showing 5 records out of 104715 total, starting on record 2586, ending on 2590