NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
23059  CVE-2015-0595  The XMLAPI in Cisco WebEx Meetings Server 1.5(.1.131) and earlier allows remote attackers to obtain sensitive information by reading return messages from crafted GET requests, aka Bug ID CSCuj67079.    Medium  2017-01-19  2017-01-06  View
40681  CVE-2013-5372  The XML4J parser in IBM WebSphere Message Broker 6.1 before 6.1.0.12, 7.0 before 7.0.0.7, and 8.0 before 8.0.0.4 and IBM Integration Bus 9.0 before 9.0.0.1 allows remote attackers to cause a denial of service (memory consumption) via a crafted XML document that triggers expansion for many entities.    4.3  Medium  2017-01-18  2014-01-27  View
19008  CVE-2016-3163  The XML-RPC system in Drupal 6.x before 6.38 and 7.x before 7.43 might make it easier for remote attackers to conduct brute-force attacks via a large number of calls made at once to the same method.    Medium  2017-01-19  2016-04-18  View
1422  CVE-2008-1475  The xml-rpc server in Roundup 1.4.4 does not check property permissions, which allows attackers to bypass restrictions and edit or read restricted properties via the (1) list, (2) display, and (3) set methods.    6.4  Medium  2017-01-03  2012-05-31  View
16341  CVE-2010-5106  The XML-RPC remote publishing interface in xmlrpc.php in WordPress before 3.0.3 does not properly check capabilities, which allows remote authenticated users to bypass intended access restrictions, and publish, edit, or delete posts, by leveraging the Author or Contributor role.    6.5  Medium  2017-01-18  2012-09-17  View

Page 2594 of 17672, showing 5 records out of 88360 total, starting on record 12966, ending on 12970

Actions