NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 17235 | CVE-2016-0882 | EMC Documentum xCP 2.1 before patch 23 and 2.2 before patch 11 allows remote authenticated users to read arbitrary files via a POST request containing an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. | 2 | 5.5 | Medium | 2017-01-19 | 2017-01-10 | View | |
| 17237 | CVE-2016-0886 | EMC Documentum xCP 2.1 before patch 24 and 2.2 before patch 12 allows remote authenticated users to obtain sensitive user-account metadata via a members/xcp_member API call. | 2 | 4 | Medium | 2017-01-19 | 2017-01-10 | View | |
| 17239 | CVE-2016-0888 | EMC Documentum D2 before 4.6 lacks intended ACLs for configuration objects, which allows remote authenticated users to modify objects via unspecified vectors. | 2 | 9 | High | 2017-01-19 | 2017-01-10 | View | |
| 17240 | CVE-2016-0889 | An HTTP servlet in vApp Manager in EMC Unisphere for VMAX Virtual Appliance before 8.2.0 allows remote attackers to write to arbitrary files via a crafted pathname. | 2 | 10 | High | 2017-01-19 | 2017-01-10 | View | |
| 17241 | CVE-2016-0891 | Multiple cross-site request forgery (CSRF) vulnerabilities in administrative pages in EMC ViPR SRM before 3.7 allow remote attackers to hijack the authentication of administrators. | 2 | 6.8 | Medium | 2017-01-19 | 2017-01-10 | View |
Page 15205 of 17672, showing 5 records out of 88360 total, starting on record 76021, ending on 76025