NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 896 | CVE-2008-0926 | The SOAP interface to the eMBox module in Novell eDirectory 8.7.3.9 and earlier, and 8.8.x before 8.8.2, relies on client-side authentication, which allows remote attackers to bypass authentication via requests for /SOAP URIs, and cause a denial of service (daemon shutdown) or read arbitrary files. NOTE: it was later reported that 8.7.3.10 (aka 8.7.3 SP10) is also affected. | 2 | 7.5 | High | 2017-01-03 | 2011-04-01 | View | |
| 1462 | CVE-2008-1515 | The SOAP interface in OTRS 2.1.x before 2.1.8 and 2.2.x before 2.2.6 allows remote attackers to "read and modify objects" via SOAP requests, related to "Missing security checks." | 2 | 6.4 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 23089 | CVE-2015-0626 | The SOAP interface in Cisco Hosted Collaboration Solution (HCS) allows remote attackers to obtain access to system-management tools via crafted Challenge SOAP calls, aka Bug ID CSCuc38114. | 2 | 4.3 | Medium | 2017-01-19 | 2015-02-19 | View | |
| 54892 | CVE-2007-2728 | The soap extension in PHP calls php_rand_r with an uninitialized seed variable, which has unknown impact and attack vectors, a related issue to the mcrypt_create_iv issue covered by CVE-2007-2727. | 2 | 4.3 | Medium | 2017-01-07 | 2012-11-05 | View | |
| 43138 | CVE-2012-1120 | The SOAP API in MantisBT before 1.2.9 does not properly enforce the bugnote_allow_user_edit_delete and delete_bug_threshold permissions, which allows remote authenticated users with read and write SOAP API privileges to delete arbitrary bug reports and bug notes. | 2 | 3.6 | Low | 2017-01-19 | 2013-08-26 | View |
Page 3071 of 17672, showing 5 records out of 88360 total, starting on record 15351, ending on 15355