NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
25607 | CVE-2015-4091 | XML external entity (XXE) vulnerability in SAP NetWeaver AS Java 7.4 allows remote attackers to send TCP requests to intranet servers or possibly have unspecified other impact via an XML request to tc~sld~wd~main/Main, related to "CIM UPLOAD," aka SAP Security Note 2090851. | 2 | 7.5 | High | 2017-01-19 | 2016-12-05 | View | |
27513 | CVE-2015-6662 | XML external entity (XXE) vulnerability in SAP NetWeaver Portal 7.4 allows remote attackers to read arbitrary files and possibly have other unspecified impact via crafted XML data, aka SAP Security Note 2168485. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-07 | View | |
36073 | CVE-2014-9360 | XML external entity (XXE) vulnerability in Scalix Web Access 11.4.6.12377 and 12.2.0.14697 allows remote attackers to read arbitrary files and trigger requests to intranet servers via a crafted request. | 2 | 6.4 | Medium | 2017-01-19 | 2014-12-11 | View | |
29088 | CVE-2014-0171 | XML external entity (XXE) vulnerability in StaxXMLFactoryProvider2 in Odata4j, as used in Red Hat JBoss Data Virtualization before 6.0.0 patch 4, allows remote attackers to read arbitrary files via a crafted request to a REST endpoint. | 2 | 5 | Medium | 2017-01-19 | 2015-01-15 | View | |
27515 | CVE-2015-6664 | XML external entity (XXE) vulnerability in the application import functionality in SAP Mobile Platform 2.3 allows remote attackers to read arbitrary files and possibly have other unspecified impact via crafted XML data, aka SAP Security Note 2152227. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-07 | View |
Page 17581 of 17672, showing 5 records out of 88360 total, starting on record 87901, ending on 87905