NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
22750  CVE-2015-0264  Multiple XML external entity (XXE) vulnerabilities in builder/xml/XPathBuilder.java in Apache Camel before 2.13.4 and 2.14.x before 2.14.2 allow remote attackers to read arbitrary files via an external entity in an invalid XML (1) String or (2) GenericFile object in an XPath query.    Medium  2017-01-19  2015-11-19  View
88286  CVE-2017-9924  In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted file, related to a User Mode Write AV starting at image00000000_00400000+0x000000000001b72a.    6.8  Medium  2017-07-18  2017-07-10  View
24030  CVE-2015-1790  The PKCS7_dataDecodefunction in crypto/pkcs7/pk7_doit.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a PKCS#7 blob that uses ASN.1 encoding and lacks inner EncryptedContent data.    Medium  2017-01-19  2016-12-30  View
24286  CVE-2015-2134  Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) before 7.5.0 allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors.    Medium  2017-01-19  2016-11-28  View
24798  CVE-2015-2811  XML external entity (XXE) vulnerability in ReportXmlViewer in SAP NetWeaver Portal 7.31.201109172004 allows remote attackers to send requests to intranet servers via crafted XML, aka SAP Security Note 2111939.    Medium  2017-01-19  2016-12-02  View

Page 16482 of 17672, showing 5 records out of 88360 total, starting on record 82406, ending on 82410

Actions