Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2017-14101 |
|
XXE (XML External Entity) in changehealthcare (CVE-2017-14101)
vulnerability in changehealthcare (CVE-2017-14101). Successful exploitation can lead to full system takeover.
|
| CVE-2017-11286 |
|
XXE (XML External Entity) in adobe (CVE-2017-11286)
vulnerability in adobe (CVE-2017-11286). Confidential information can be exposed externally.
|
| CVE-2017-14868 |
|
XXE (XML External Entity) in restlet (CVE-2017-14868)
vulnerability in restlet (CVE-2017-14868). Confidential information can be exposed externally.
|
| CVE-2017-14949 |
|
XXE (XML External Entity) in restlet (CVE-2017-14949)
vulnerability in restlet (CVE-2017-14949). Confidential information can be exposed externally.
|
| CVE-2017-10889 |
|
XXE (XML External Entity) in tablepress (CVE-2017-10889)
vulnerability in tablepress (CVE-2017-10889). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-1477 |
|
XXE (XML External Entity) in ibm (CVE-2017-1477)
vulnerability in ibm (CVE-2017-1477). Confidential information can be exposed externally.
|
| CVE-2017-9096 |
|
XXE (XML External Entity) in itextpdf (CVE-2017-9096)
vulnerability in itextpdf (CVE-2017-9096). Successful exploitation can lead to full system takeover.
|
| CVE-2014-3579 |
|
XXE (XML External Entity) in apache (CVE-2014-3579)
vulnerability in apache (CVE-2014-3579). Successful exploitation can lead to full system takeover.
|
| CVE-2014-3600 |
|
XXE (XML External Entity) in apache (CVE-2014-3600)
vulnerability in apache (CVE-2014-3600). Successful exploitation can lead to full system takeover.
|
| CVE-2016-5002 |
|
XXE (XML External Entity) in apache (CVE-2016-5002)
vulnerability in apache (CVE-2016-5002). Successful exploitation can lead to full system takeover.
|
| CVE-2017-15639 |
|
XXE (XML External Entity) in getmura (CVE-2017-15639)
vulnerability in getmura (CVE-2017-15639). Confidential information can be exposed externally.
|
| CVE-2014-9487 |
|
XXE (XML External Entity) in dos (CVE-2014-9487)
vulnerability in dos (CVE-2014-9487). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12629 |
|
XXE (XML External Entity) in c (CVE-2017-12629)
vulnerability in c (CVE-2017-12629). Successful exploitation can lead to full system takeover.
|
| CVE-2017-10617 |
|
XXE (XML External Entity) in c (CVE-2017-10617)
vulnerability in c (CVE-2017-10617). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-15280 |
|
XXE (XML External Entity) in ssrf (CVE-2017-15280)
vulnerability in ssrf (CVE-2017-15280). Confidential information can be exposed externally.
|
| CVE-2017-12623 |
|
XXE (XML External Entity) in apache (CVE-2017-12623)
vulnerability in apache (CVE-2017-12623). Confidential information can be exposed externally.
|
| CVE-2017-13706 |
|
XXE (XML External Entity) in ssrf (CVE-2017-13706)
vulnerability in ssrf (CVE-2017-13706). Successful exploitation can lead to full system takeover.
|
| CVE-2014-0030 |
|
XXE (XML External Entity) in apache (CVE-2014-0030)
vulnerability in apache (CVE-2014-0030). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14759 |
|
XXE (XML External Entity) in ssrf (CVE-2017-14759)
vulnerability in ssrf (CVE-2017-14759). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12620 |
|
XXE (XML External Entity) in apache (CVE-2017-12620)
vulnerability in apache (CVE-2017-12620). Successful exploitation can lead to full system takeover.
|
| CVE-2016-4434 |
|
XXE (XML External Entity) in apache (CVE-2016-4434)
vulnerability in apache (CVE-2016-4434). Successful exploitation can lead to full system takeover.
|
| CVE-2017-12621 |
|
XXE (XML External Entity) in apache (CVE-2017-12621)
vulnerability in apache (CVE-2017-12621). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14526 |
|
XXE (XML External Entity) in dos (CVE-2017-14526)
vulnerability in dos (CVE-2017-14526). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14527 |
|
XXE (XML External Entity) in dos (CVE-2017-14527)
vulnerability in dos (CVE-2017-14527). Successful exploitation can lead to full system takeover.
|
| CVE-2017-1527 |
|
XXE (XML External Entity) in ibm (CVE-2017-1527)
vulnerability in ibm (CVE-2017-1527). Confidential information can be exposed externally.
|
| CVE-2017-8710 |
|
XXE (XML External Entity) in microsoft (CVE-2017-8710)
vulnerability in microsoft (CVE-2017-8710). Confidential information can be exposed externally.
|
| CVE-2017-8918 |
|
XXE (XML External Entity) in blackwave (CVE-2017-8918)
vulnerability in blackwave (CVE-2017-8918). Confidential information can be exposed externally.
|
| CVE-2017-8040 |
|
XXE (XML External Entity) in vmware (CVE-2017-8040)
vulnerability in vmware (CVE-2017-8040). Confidential information can be exposed externally.
|
| CVE-2017-9095 |
|
XXE (XML External Entity) in divinglog (CVE-2017-9095)
vulnerability in divinglog (CVE-2017-9095). Confidential information can be exposed externally.
|
| CVE-2017-12216 |
|
Information Disclosure in cisco (CVE-2017-12216)
vulnerability in cisco (CVE-2017-12216). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9458 |
|
XXE (XML External Entity) in ssrf (CVE-2017-9458)
vulnerability in ssrf (CVE-2017-9458). Successful exploitation can lead to full system takeover.
|
| CVE-2015-3160 |
|
XXE (XML External Entity) in beaker-project (CVE-2015-3160)
vulnerability in beaker-project (CVE-2015-3160). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-7241 |
|
XML External Entity (XXE) vulnerability in SAP Netweaver before 7.01.
XML External Entity (XXE) vulnerability in SAP Netweaver before 7.01.
|
| CVE-2017-1458 |
|
XXE (XML External Entity) in ibm (CVE-2017-1458)
vulnerability in ibm (CVE-2017-1458). Confidential information can be exposed externally.
|
| CVE-2016-5795 |
|
XXE (XML External Entity) in automatedlogic (CVE-2016-5795)
vulnerability in automatedlogic (CVE-2016-5795). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-12069 |
|
XXE (XML External Entity) in csharp (CVE-2017-12069)
vulnerability in csharp (CVE-2017-12069). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11272 |
|
Adobe Digital Editions 4.5.4 and earlier has a security bypass vulnerability.
Adobe Digital Editions 4.5.4 and earlier has a security bypass vulnerability.
|
| CVE-2016-8739 |
|
XXE (XML External Entity) in apache (CVE-2016-8739)
vulnerability in apache (CVE-2016-8739). Confidential information can be exposed externally.
|
| CVE-2017-1192 |
|
XXE (XML External Entity) in ibm (CVE-2017-1192)
vulnerability in ibm (CVE-2017-1192). Confidential information can be exposed externally.
|
| CVE-2010-2245 |
|
XXE (XML External Entity) in apache (CVE-2010-2245)
vulnerability in apache (CVE-2010-2245). Confidential information can be exposed externally.
|
| CVE-2017-11390 |
|
XXE (XML External Entity) in trendmicro (CVE-2017-11390)
vulnerability in trendmicro (CVE-2017-11390). Confidential information can be exposed externally.
|
| CVE-2015-0194 |
|
XXE (XML External Entity) in ibm (CVE-2015-0194)
vulnerability in ibm (CVE-2015-0194). Confidential information can be exposed externally.
|
| CVE-2017-1383 |
|
XXE (XML External Entity) in ibm (CVE-2017-1383)
vulnerability in ibm (CVE-2017-1383). Confidential information can be exposed externally.
|
| CVE-2017-9233 |
|
XXE (XML External Entity) in libexpat-project (CVE-2017-9233)
vulnerability in libexpat-project (CVE-2017-9233). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-11457 |
|
XXE (XML External Entity) in ssrf (CVE-2017-11457)
vulnerability in ssrf (CVE-2017-11457). Confidential information can be exposed externally.
|
| CVE-2017-1219 |
|
XXE (XML External Entity) in ibm (CVE-2017-1219)
vulnerability in ibm (CVE-2017-1219). Confidential information can be exposed externally.
|
| CVE-2016-6798 |
|
XXE (XML External Entity) in apache (CVE-2016-6798)
vulnerability in apache (CVE-2016-6798). Successful exploitation can lead to full system takeover.
|
| CVE-2017-7664 |
|
Uploaded XML documents were not correctly validated in Apache OpenMeetings 3.1.0.
Uploaded XML documents were not correctly validated in Apache OpenMeetings 3.1.0.
|
| CVE-2017-1000061 |
|
XXE (XML External Entity) in dos (CVE-2017-1000061)
vulnerability in dos (CVE-2017-1000061). Confidential information can be exposed externally.
|
| CVE-2017-1000021 |
|
LogicalDoc Community Edition 7.5.3 and prior is vulnerable to XXE when indexing XML documents.
LogicalDoc Community Edition 7.5.3 and prior is vulnerable to XXE when indexing XML documents.
|