Vulnerability reports, vendor advisories, and mitigation guidance for XML web services infrastructure. Members may submit advisories for review by the moderation team before publication.
| Thread | Author | Date | Replies |
|---|---|---|---|
| XML Parser Vulnerabilities in Web Services Endpoints (CVE-2002-2344) | mhendricks | 2002-12-04 | 4 |
| XPath Injection in Apache Axis 1.1 SOAP Message Router | p_richardson | 2003-02-11 | 7 |
| External Entity Resolution in IBM WebSphere 5.0 SOAP Engine | xmlsecguy | 2003-03-28 | 5 |
| WS-Security Header Spoofing via Namespace Confusion (Apache Axis) | s_yamamoto | 2003-06-14 | 9 |
| WSDL Information Disclosure in BEA WebLogic 8.1 Default Configuration | d_kumar | 2003-09-05 | 3 |
| SOAP Attachment Handling Buffer Overflow in Microsoft SOAP Toolkit 3.0 | r_foster | 2003-11-18 | 6 |
| XML Schema Poisoning via WSDL Import in .NET Web Services | mhendricks | 2004-01-22 | 8 |
| UDDI Registry Authentication Bypass in systinet WASP Server 4.5 | jturner_dev | 2004-03-09 | 2 |
Showing threads 1-8 of 8. Page 1 of 1.