NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
17235  CVE-2016-0882  EMC Documentum xCP 2.1 before patch 23 and 2.2 before patch 11 allows remote authenticated users to read arbitrary files via a POST request containing an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.    5.5  Medium  2017-01-19  2017-01-10  View
17237  CVE-2016-0886  EMC Documentum xCP 2.1 before patch 24 and 2.2 before patch 12 allows remote authenticated users to obtain sensitive user-account metadata via a members/xcp_member API call.    Medium  2017-01-19  2017-01-10  View
17239  CVE-2016-0888  EMC Documentum D2 before 4.6 lacks intended ACLs for configuration objects, which allows remote authenticated users to modify objects via unspecified vectors.    High  2017-01-19  2017-01-10  View
17240  CVE-2016-0889  An HTTP servlet in vApp Manager in EMC Unisphere for VMAX Virtual Appliance before 8.2.0 allows remote attackers to write to arbitrary files via a crafted pathname.    10  High  2017-01-19  2017-01-10  View
17241  CVE-2016-0891  Multiple cross-site request forgery (CSRF) vulnerabilities in administrative pages in EMC ViPR SRM before 3.7 allow remote attackers to hijack the authentication of administrators.    6.8  Medium  2017-01-19  2017-01-10  View

Page 15205 of 17672, showing 5 records out of 88360 total, starting on record 76021, ending on 76025

Actions