CVE List

Id CVE No. Status Description Phase Votes Comments Actions
50642  CVE-2011-2730  Candidate  VMware SpringSource Spring Framework before 2.5.6.SEC03, 2.5.7.SR023, and 3.x before 3.0.6, when a container supports Expression Language (EL), evaluates EL expressions in tags twice, which allows remote attackers to obtain sensitive information via a (1) name attribute in a (a) spring:hasBindErrors tag; (2) path attribute in a (b) spring:bind or (c) spring:nestedpath tag; (3) arguments, (4) code, (5) text, (6) var, (7) scope, or (8) message attribute in a (d) spring:message or (e) spring:theme tag; or (9) var, (10) scope, or (11) value attribute in a (f) spring:transform tag, aka "Expression Language Injection."  Assigned (20110711)  None (candidate not yet proposed)    View
55076  CVE-2012-1833  Candidate  VMware SpringSource Grails before 1.3.8, and 2.x before 2.0.2, does not properly restrict data binding, which might allow remote attackers to bypass intended access restrictions and modify arbitrary object properties via a crafted request parameter to an application.  Assigned (20120321)  None (candidate not yet proposed)    View
18766  CVE-2006-2662  Candidate  VMware Server before RC1 does not clear user credentials from memory after a console connection is made, which might allow local attackers to gain privileges.  Assigned (20060530)  None (candidate not yet proposed)    View
92152  CVE-2016-5333  Candidate  VMware Photos OS OVA 1.0 before 2016-08-14 has a default SSH public key in an authorized_keys file, which allows remote attackers to obtain SSH access by leveraging knowledge of the private key.  Assigned (20160607)  None (candidate not yet proposed)    View
88898  CVE-2016-2079  Candidate  VMware NSX Edge 6.1 before 6.1.7 and 6.2 before 6.2.3 and vCNS Edge 5.5 before 5.5.4.3, when the SSL-VPN feature is configured, allow remote attackers to obtain sensitive information via unspecified vectors.  Assigned (20160126)  None (candidate not yet proposed)    View

Page 521 of 20943, showing 5 records out of 104715 total, starting on record 2601, ending on 2605

Actions