Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Tag: cwe-611 Clear
ID Title
CVE-2017-0170 XXE (XML External Entity) in microsoft (CVE-2017-0170)
vulnerability in microsoft (CVE-2017-0170). Risk of unauthorized operations or information disclosure.
CVE-2017-8557 XXE (XML External Entity) in microsoft (CVE-2017-8557)
vulnerability in microsoft (CVE-2017-8557). Confidential information can be exposed externally.
CVE-2017-1254 XXE (XML External Entity) in ibm (CVE-2017-1254)
vulnerability in ibm (CVE-2017-1254). Confidential information can be exposed externally.
CVE-2017-10670 XXE (XML External Entity) in csharp (CVE-2017-10670)
vulnerability in csharp (CVE-2017-10670). Successful exploitation can lead to full system takeover.
CVE-2017-1322 XXE (XML External Entity) in ibm (CVE-2017-1322)
vulnerability in ibm (CVE-2017-1322). Confidential information can be exposed externally.
CVE-2017-6662 Vulnerability in cisco (CVE-2017-6662)
vulnerability in cisco (CVE-2017-6662). Successful exploitation can lead to full system takeover.
CVE-2017-9231 XXE (XML External Entity) in citrix (CVE-2017-9231)
vulnerability in citrix (CVE-2017-9231). Confidential information can be exposed externally.
CVE-2016-9698 XXE (XML External Entity) in dos (CVE-2016-9698)
vulnerability in dos (CVE-2016-9698). Confidential information can be exposed externally.
CVE-2016-0254 XXE (XML External Entity) in dos (CVE-2016-0254)
vulnerability in dos (CVE-2016-0254). Risk of unauthorized operations or information disclosure.
CVE-2015-7326 XML External Entity (XXE) vulnerability in Milton Webdav before 2.7.0.3.
XML External Entity (XXE) vulnerability in Milton Webdav before 2.7.0.3.
CVE-2017-2308 XXE (XML External Entity) in juniper (CVE-2017-2308)
vulnerability in juniper (CVE-2017-2308). Confidential information can be exposed externally.
CVE-2017-9295 XXE (XML External Entity) in hitachi (CVE-2017-9295)
vulnerability in hitachi (CVE-2017-9295). Confidential information can be exposed externally.
CVE-2016-6256 XXE (XML External Entity) in sap (CVE-2016-6256)
vulnerability in sap (CVE-2016-6256). Successful exploitation can lead to full system takeover.
CVE-2014-0225 XXE (XML External Entity) in spring (CVE-2014-0225)
vulnerability in spring (CVE-2014-0225). Successful exploitation can lead to full system takeover.
CVE-2017-8913 XXE (XML External Entity) in sap (CVE-2017-8913)
vulnerability in sap (CVE-2017-8913). Successful exploitation can lead to full system takeover.
CVE-2017-1289 XXE (XML External Entity) in ibm (CVE-2017-1289)
vulnerability in ibm (CVE-2017-1289). Confidential information can be exposed externally.
CVE-2017-7907 XXE (XML External Entity) in dos (CVE-2017-7907)
vulnerability in dos (CVE-2017-7907). Confidential information can be exposed externally.
CVE-2017-7503 XXE (XML External Entity) in ssrf (CVE-2017-7503)
vulnerability in ssrf (CVE-2017-7503). Successful exploitation can lead to full system takeover.
CVE-2017-1103 XXE (XML External Entity) in dos (CVE-2017-1103)
vulnerability in dos (CVE-2017-1103). Confidential information can be exposed externally.
CVE-2016-9691 XXE (XML External Entity) in dos (CVE-2016-9691)
vulnerability in dos (CVE-2016-9691). Confidential information can be exposed externally.
CVE-2017-1149 XXE (XML External Entity) in dos (CVE-2017-1149)
vulnerability in dos (CVE-2017-1149). Confidential information can be exposed externally.
CVE-2017-8110 XXE (XML External Entity) in modified-shop (CVE-2017-8110)
vulnerability in modified-shop (CVE-2017-8110). Successful exploitation can lead to full system takeover.
CVE-2017-3548 XXE (XML External Entity) in c (CVE-2017-3548)
vulnerability in c (CVE-2017-3548). Risk of unauthorized operations or information disclosure.
CVE-2017-8056 XXE (XML External Entity) in dos (CVE-2017-8056)
vulnerability in dos (CVE-2017-8056). Risk of unauthorized operations or information disclosure.
CVE-2017-5661 XXE (XML External Entity) in apache (CVE-2017-5661)
vulnerability in apache (CVE-2017-5661). Confidential information can be exposed externally.
CVE-2017-5662 XXE (XML External Entity) in apache (CVE-2017-5662)
vulnerability in apache (CVE-2017-5662). Confidential information can be exposed externally.
CVE-2016-7051 XXE (XML External Entity) in ssrf (CVE-2016-7051)
vulnerability in ssrf (CVE-2016-7051). Data can be tampered with by attackers.
CVE-2017-7457 XXE (XML External Entity) in moxa (CVE-2017-7457)
vulnerability in moxa (CVE-2017-7457). Confidential information can be exposed externally.
CVE-2015-7273 Dell Integrated Remote Access Controller (iDRAC) 7/8 before 2.21.21.21 has XXE.
Dell Integrated Remote Access Controller (iDRAC) 7/8 before 2.21.21.21 has XXE.
CVE-2016-6805 XXE (XML External Entity) in apache (CVE-2016-6805)
vulnerability in apache (CVE-2016-6805). Confidential information can be exposed externally.
CVE-2016-6111 XXE (XML External Entity) in dos (CVE-2016-6111)
vulnerability in dos (CVE-2016-6111). Confidential information can be exposed externally.
CVE-2016-9707 XXE (XML External Entity) in dos (CVE-2016-9707)
vulnerability in dos (CVE-2016-9707). Confidential information can be exposed externally.
CVE-2016-9924 XXE (XML External Entity) in synacor (CVE-2016-9924)
vulnerability in synacor (CVE-2016-9924). Successful exploitation can lead to full system takeover.
CVE-2016-10149 XXE (XML External Entity) in pysaml2-project (CVE-2016-10149)
vulnerability in pysaml2-project (CVE-2016-10149). Confidential information can be exposed externally.
CVE-2017-6895 XXE (XML External Entity) in usb-pratirodh-project (CVE-2017-6895)
vulnerability in usb-pratirodh-project (CVE-2017-6895). Successful exploitation can lead to full system takeover.
CVE-2016-5748 XXE (XML External Entity) in netiq (CVE-2016-5748)
vulnerability in netiq (CVE-2016-5748). Confidential information can be exposed externally.
CVE-2016-5749 XXE (XML External Entity) in netiq (CVE-2016-5749)
vulnerability in netiq (CVE-2016-5749). Confidential information can be exposed externally.
CVE-2016-4931 XML entity injection in Junos Space before 15.2R2 allows attackers to cause a denial of service.
XML entity injection in Junos Space before 15.2R2 allows attackers to cause a denial of service.
CVE-2017-3811 XXE (XML External Entity) in cisco (CVE-2017-3811)
vulnerability in cisco (CVE-2017-3811). Confidential information can be exposed externally.
CVE-2016-9724 XXE (XML External Entity) in dos (CVE-2016-9724)
vulnerability in dos (CVE-2016-9724). Confidential information can be exposed externally.
CVE-2016-10127 XXE (XML External Entity) in pysaml2-project (CVE-2016-10127)
vulnerability in pysaml2-project (CVE-2016-10127). Successful exploitation can lead to full system takeover.
CVE-2017-6344 XXE (XML External Entity) in grails (CVE-2017-6344)
vulnerability in grails (CVE-2017-6344). Confidential information can be exposed externally.
CVE-2016-8974 XXE (XML External Entity) in dos (CVE-2016-8974)
vulnerability in dos (CVE-2016-8974). Confidential information can be exposed externally.
CVE-2017-3839 XXE (XML External Entity) in cisco (CVE-2017-3839)
vulnerability in cisco (CVE-2017-3839). Risk of unauthorized operations or information disclosure.
CVE-2017-6055 XXE (XML External Entity) in eparaksts (CVE-2017-6055)
vulnerability in eparaksts (CVE-2017-6055). Successful exploitation can lead to full system takeover.
CVE-2016-4312 XXE (XML External Entity) in ssrf (CVE-2016-4312)
vulnerability in ssrf (CVE-2016-4312). Successful exploitation can lead to full system takeover.
CVE-2016-9706 XXE (XML External Entity) in dos (CVE-2016-9706)
vulnerability in dos (CVE-2016-9706). Confidential information can be exposed externally.
CVE-2017-5992 XXE (XML External Entity) in openpyxl (CVE-2017-5992)
vulnerability in openpyxl (CVE-2017-5992). Confidential information can be exposed externally.
CVE-2016-8348 XXE (XML External Entity) in emerson (CVE-2016-8348)
vulnerability in emerson (CVE-2016-8348). Successful exploitation can lead to full system takeover.
CVE-2016-8980 XXE (XML External Entity) in dos (CVE-2016-8980)
vulnerability in dos (CVE-2016-8980). Confidential information can be exposed externally.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →