Vulnerability index

Browse CVEs

1,208 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness XML External Entity (XXE)CWE-611 × clear
CRITICAL 9.1 CVE-2012-2239 Mahara 1.4.x before 1.4.4 and 1.5.x before 1.5.3 allows remote attackers to read arbitrary files or create TCP connections via an XML external entity… Debian Linux 1.4.4 / 1.5.3+ Fix from $2,3002012-11-24 HIGH 7.5 CVE-2012-4399EPSS 12% The Xml class in CakePHP 2.1.x before 2.1.5 and 2.2.x before 2.2.1 allows remote attackers to read arbitrary files via XML data containing external e… Cakephp 2.1.5 / 2.2.1+ Fix from $1,9502012-10-09 MEDIUM 6.5 CVE-2012-3489 The xml_parse function in the libxml2 support in the core server component in PostgreSQL 8.3 before 8.3.20, 8.4 before 8.4.13, 9.0 before 9.0.9, and … PostgreSQL 8.3.20 / 8.4.13+ Fix from $1,6002012-10-03 MEDIUM 6.5 CVE-2012-0037EPSS 14% Redland Raptor (aka libraptor) before 2.0.7, as used by OpenOffice 3.3 and 3.4 Beta, LibreOffice before 3.4.6 and 3.5.x before 3.5.1, and other produ… Openoffice Patch available Fix from $1,6002012-06-17 MEDIUM 6.5 CVE-2011-4107EPSS 13% The simplexml_load_string function in the XML import plug-in (libraries/import/xml.php) in phpMyAdmin 3.4.x before 3.4.7.1 and 3.3.x before 3.3.10.5 … Fedora 3.3.10.5 / 3.4.7.1+ Fix from $1,6002011-11-17 HIGH 8.8 CVE-2010-3322 The XML parser in Splunk 4.0.0 through 4.1.4 allows remote authenticated users to obtain sensitive information and gain privileges via an XML Externa… Splunk after 4.1.4 Fix from $1,9502010-09-14 HIGH 7.5 CVE-2009-1699EPSS 29% The XSL stylesheet implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 d… Safari 4.0+ Fix from $1,9502009-06-10 HIGH 7.5 CVE-2005-1306EPSS 15% The Adobe Reader control in Adobe Reader and Acrobat 7.0 and 7.0.1 allows remote attackers to determine the existence of files via Javascript contain… Acrobat Patch available Fix from $1,9502005-06-15