Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Tag: cwe-611 Clear
ID Title
CVE-2017-14101 XXE (XML External Entity) in changehealthcare (CVE-2017-14101)
vulnerability in changehealthcare (CVE-2017-14101). Successful exploitation can lead to full system takeover.
CVE-2017-11286 XXE (XML External Entity) in adobe (CVE-2017-11286)
vulnerability in adobe (CVE-2017-11286). Confidential information can be exposed externally.
CVE-2017-14868 XXE (XML External Entity) in restlet (CVE-2017-14868)
vulnerability in restlet (CVE-2017-14868). Confidential information can be exposed externally.
CVE-2017-14949 XXE (XML External Entity) in restlet (CVE-2017-14949)
vulnerability in restlet (CVE-2017-14949). Confidential information can be exposed externally.
CVE-2017-10889 XXE (XML External Entity) in tablepress (CVE-2017-10889)
vulnerability in tablepress (CVE-2017-10889). Risk of unauthorized operations or information disclosure.
CVE-2017-1477 XXE (XML External Entity) in ibm (CVE-2017-1477)
vulnerability in ibm (CVE-2017-1477). Confidential information can be exposed externally.
CVE-2017-9096 XXE (XML External Entity) in itextpdf (CVE-2017-9096)
vulnerability in itextpdf (CVE-2017-9096). Successful exploitation can lead to full system takeover.
CVE-2014-3579 XXE (XML External Entity) in apache (CVE-2014-3579)
vulnerability in apache (CVE-2014-3579). Successful exploitation can lead to full system takeover.
CVE-2014-3600 XXE (XML External Entity) in apache (CVE-2014-3600)
vulnerability in apache (CVE-2014-3600). Successful exploitation can lead to full system takeover.
CVE-2016-5002 XXE (XML External Entity) in apache (CVE-2016-5002)
vulnerability in apache (CVE-2016-5002). Successful exploitation can lead to full system takeover.
CVE-2017-15639 XXE (XML External Entity) in getmura (CVE-2017-15639)
vulnerability in getmura (CVE-2017-15639). Confidential information can be exposed externally.
CVE-2014-9487 XXE (XML External Entity) in dos (CVE-2014-9487)
vulnerability in dos (CVE-2014-9487). Successful exploitation can lead to full system takeover.
CVE-2017-12629 XXE (XML External Entity) in c (CVE-2017-12629)
vulnerability in c (CVE-2017-12629). Successful exploitation can lead to full system takeover.
CVE-2017-10617 XXE (XML External Entity) in c (CVE-2017-10617)
vulnerability in c (CVE-2017-10617). Risk of unauthorized operations or information disclosure.
CVE-2017-15280 XXE (XML External Entity) in ssrf (CVE-2017-15280)
vulnerability in ssrf (CVE-2017-15280). Confidential information can be exposed externally.
CVE-2017-12623 XXE (XML External Entity) in apache (CVE-2017-12623)
vulnerability in apache (CVE-2017-12623). Confidential information can be exposed externally.
CVE-2017-13706 XXE (XML External Entity) in ssrf (CVE-2017-13706)
vulnerability in ssrf (CVE-2017-13706). Successful exploitation can lead to full system takeover.
CVE-2014-0030 XXE (XML External Entity) in apache (CVE-2014-0030)
vulnerability in apache (CVE-2014-0030). Successful exploitation can lead to full system takeover.
CVE-2017-14759 XXE (XML External Entity) in ssrf (CVE-2017-14759)
vulnerability in ssrf (CVE-2017-14759). Successful exploitation can lead to full system takeover.
CVE-2017-12620 XXE (XML External Entity) in apache (CVE-2017-12620)
vulnerability in apache (CVE-2017-12620). Successful exploitation can lead to full system takeover.
CVE-2016-4434 XXE (XML External Entity) in apache (CVE-2016-4434)
vulnerability in apache (CVE-2016-4434). Successful exploitation can lead to full system takeover.
CVE-2017-12621 XXE (XML External Entity) in apache (CVE-2017-12621)
vulnerability in apache (CVE-2017-12621). Successful exploitation can lead to full system takeover.
CVE-2017-14526 XXE (XML External Entity) in dos (CVE-2017-14526)
vulnerability in dos (CVE-2017-14526). Successful exploitation can lead to full system takeover.
CVE-2017-14527 XXE (XML External Entity) in dos (CVE-2017-14527)
vulnerability in dos (CVE-2017-14527). Successful exploitation can lead to full system takeover.
CVE-2017-1527 XXE (XML External Entity) in ibm (CVE-2017-1527)
vulnerability in ibm (CVE-2017-1527). Confidential information can be exposed externally.
CVE-2017-8710 XXE (XML External Entity) in microsoft (CVE-2017-8710)
vulnerability in microsoft (CVE-2017-8710). Confidential information can be exposed externally.
CVE-2017-8918 XXE (XML External Entity) in blackwave (CVE-2017-8918)
vulnerability in blackwave (CVE-2017-8918). Confidential information can be exposed externally.
CVE-2017-8040 XXE (XML External Entity) in vmware (CVE-2017-8040)
vulnerability in vmware (CVE-2017-8040). Confidential information can be exposed externally.
CVE-2017-9095 XXE (XML External Entity) in divinglog (CVE-2017-9095)
vulnerability in divinglog (CVE-2017-9095). Confidential information can be exposed externally.
CVE-2017-12216 Information Disclosure in cisco (CVE-2017-12216)
vulnerability in cisco (CVE-2017-12216). Successful exploitation can lead to full system takeover.
CVE-2017-9458 XXE (XML External Entity) in ssrf (CVE-2017-9458)
vulnerability in ssrf (CVE-2017-9458). Successful exploitation can lead to full system takeover.
CVE-2015-3160 XXE (XML External Entity) in beaker-project (CVE-2015-3160)
vulnerability in beaker-project (CVE-2015-3160). Risk of unauthorized operations or information disclosure.
CVE-2015-7241 XML External Entity (XXE) vulnerability in SAP Netweaver before 7.01.
XML External Entity (XXE) vulnerability in SAP Netweaver before 7.01.
CVE-2017-1458 XXE (XML External Entity) in ibm (CVE-2017-1458)
vulnerability in ibm (CVE-2017-1458). Confidential information can be exposed externally.
CVE-2016-5795 XXE (XML External Entity) in automatedlogic (CVE-2016-5795)
vulnerability in automatedlogic (CVE-2016-5795). Risk of unauthorized operations or information disclosure.
CVE-2017-12069 XXE (XML External Entity) in csharp (CVE-2017-12069)
vulnerability in csharp (CVE-2017-12069). Risk of unauthorized operations or information disclosure.
CVE-2017-11272 Adobe Digital Editions 4.5.4 and earlier has a security bypass vulnerability.
Adobe Digital Editions 4.5.4 and earlier has a security bypass vulnerability.
CVE-2016-8739 XXE (XML External Entity) in apache (CVE-2016-8739)
vulnerability in apache (CVE-2016-8739). Confidential information can be exposed externally.
CVE-2017-1192 XXE (XML External Entity) in ibm (CVE-2017-1192)
vulnerability in ibm (CVE-2017-1192). Confidential information can be exposed externally.
CVE-2010-2245 XXE (XML External Entity) in apache (CVE-2010-2245)
vulnerability in apache (CVE-2010-2245). Confidential information can be exposed externally.
CVE-2017-11390 XXE (XML External Entity) in trendmicro (CVE-2017-11390)
vulnerability in trendmicro (CVE-2017-11390). Confidential information can be exposed externally.
CVE-2015-0194 XXE (XML External Entity) in ibm (CVE-2015-0194)
vulnerability in ibm (CVE-2015-0194). Confidential information can be exposed externally.
CVE-2017-1383 XXE (XML External Entity) in ibm (CVE-2017-1383)
vulnerability in ibm (CVE-2017-1383). Confidential information can be exposed externally.
CVE-2017-9233 XXE (XML External Entity) in libexpat-project (CVE-2017-9233)
vulnerability in libexpat-project (CVE-2017-9233). Risk of unauthorized operations or information disclosure.
CVE-2017-11457 XXE (XML External Entity) in ssrf (CVE-2017-11457)
vulnerability in ssrf (CVE-2017-11457). Confidential information can be exposed externally.
CVE-2017-1219 XXE (XML External Entity) in ibm (CVE-2017-1219)
vulnerability in ibm (CVE-2017-1219). Confidential information can be exposed externally.
CVE-2016-6798 XXE (XML External Entity) in apache (CVE-2016-6798)
vulnerability in apache (CVE-2016-6798). Successful exploitation can lead to full system takeover.
CVE-2017-7664 Uploaded XML documents were not correctly validated in Apache OpenMeetings 3.1.0.
Uploaded XML documents were not correctly validated in Apache OpenMeetings 3.1.0.
CVE-2017-1000061 XXE (XML External Entity) in dos (CVE-2017-1000061)
vulnerability in dos (CVE-2017-1000061). Confidential information can be exposed externally.
CVE-2017-1000021 LogicalDoc Community Edition 7.5.3 and prior is vulnerable to XXE when indexing XML documents.
LogicalDoc Community Edition 7.5.3 and prior is vulnerable to XXE when indexing XML documents.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →