NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 49945 | CVE-2009-2704 | CA SiteMinder allows remote attackers to bypass cross-site scripting (XSS) protections for J2EE applications via a request containing a %00 (encoded null byte). | 2 | 4.3 | Medium | 2017-01-07 | 2009-08-11 | View | |
| 49946 | CVE-2009-2705 | CA SiteMinder allows remote attackers to bypass cross-site scripting (XSS) protections for J2EE applications via a request containing non-canonical, "overlong Unicode" in place of blacklisted characters. | 2 | 4.3 | Medium | 2017-01-07 | 2009-08-11 | View | |
| 38355 | CVE-2013-2279 | CA SiteMinder Federation (FSS) 12.5, 12.0, and r6; Federation (Standalone) 12.1 and 12.0; Agent for SharePoint 2010; and SiteMinder for Secure Proxy Server 6.0, 12.0, and 12.5 does not properly verify XML signatures for SAML statements, which allows remote attackers to spoof other users and gain privileges. | 2 | 7.5 | High | 2017-01-18 | 2013-03-22 | View | |
| 24814 | CVE-2015-2828 | CA Spectrum 9.2.x and 9.3.x before 9.3 H02 does not properly validate serialized Java objects, which allows remote authenticated users to obtain administrative privileges via crafted object data. | 2 | 9 | High | 2017-01-19 | 2016-12-02 | View | |
| 46974 | CVE-2012-5973 | CA XCOM Data Transport r11.0 and r11.5 on UNIX and Linux allows remote attackers to execute arbitrary commands via a crafted request. | 2 | 10 | High | 2017-01-19 | 2012-12-11 | View |
Page 2288 of 17672, showing 5 records out of 88360 total, starting on record 11436, ending on 11440