NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
22750 | CVE-2015-0264 | Multiple XML external entity (XXE) vulnerabilities in builder/xml/XPathBuilder.java in Apache Camel before 2.13.4 and 2.14.x before 2.14.2 allow remote attackers to read arbitrary files via an external entity in an invalid XML (1) String or (2) GenericFile object in an XPath query. | 2 | 5 | Medium | 2017-01-19 | 2015-11-19 | View | |
88286 | CVE-2017-9924 | In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted file, related to a User Mode Write AV starting at image00000000_00400000+0x000000000001b72a. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View | |
24030 | CVE-2015-1790 | The PKCS7_dataDecodefunction in crypto/pkcs7/pk7_doit.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a PKCS#7 blob that uses ASN.1 encoding and lacks inner EncryptedContent data. | 2 | 5 | Medium | 2017-01-19 | 2016-12-30 | View | |
24286 | CVE-2015-2134 | Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) before 7.5.0 allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors. | 2 | 6 | Medium | 2017-01-19 | 2016-11-28 | View | |
24798 | CVE-2015-2811 | XML external entity (XXE) vulnerability in ReportXmlViewer in SAP NetWeaver Portal 7.31.201109172004 allows remote attackers to send requests to intranet servers via crafted XML, aka SAP Security Note 2111939. | 2 | 5 | Medium | 2017-01-19 | 2016-12-02 | View |
Page 16482 of 17672, showing 5 records out of 88360 total, starting on record 82406, ending on 82410