NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 23059 | CVE-2015-0595 | The XMLAPI in Cisco WebEx Meetings Server 1.5(.1.131) and earlier allows remote attackers to obtain sensitive information by reading return messages from crafted GET requests, aka Bug ID CSCuj67079. | 2 | 5 | Medium | 2017-01-19 | 2017-01-06 | View | |
| 40681 | CVE-2013-5372 | The XML4J parser in IBM WebSphere Message Broker 6.1 before 6.1.0.12, 7.0 before 7.0.0.7, and 8.0 before 8.0.0.4 and IBM Integration Bus 9.0 before 9.0.0.1 allows remote attackers to cause a denial of service (memory consumption) via a crafted XML document that triggers expansion for many entities. | 2 | 4.3 | Medium | 2017-01-18 | 2014-01-27 | View | |
| 19008 | CVE-2016-3163 | The XML-RPC system in Drupal 6.x before 6.38 and 7.x before 7.43 might make it easier for remote attackers to conduct brute-force attacks via a large number of calls made at once to the same method. | 2 | 5 | Medium | 2017-01-19 | 2016-04-18 | View | |
| 1422 | CVE-2008-1475 | The xml-rpc server in Roundup 1.4.4 does not check property permissions, which allows attackers to bypass restrictions and edit or read restricted properties via the (1) list, (2) display, and (3) set methods. | 2 | 6.4 | Medium | 2017-01-03 | 2012-05-31 | View | |
| 16341 | CVE-2010-5106 | The XML-RPC remote publishing interface in xmlrpc.php in WordPress before 3.0.3 does not properly check capabilities, which allows remote authenticated users to bypass intended access restrictions, and publish, edit, or delete posts, by leveraging the Author or Contributor role. | 2 | 6.5 | Medium | 2017-01-18 | 2012-09-17 | View |
Page 2594 of 17672, showing 5 records out of 88360 total, starting on record 12966, ending on 12970