CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104220  CVE-2017-7400  Candidate  OpenStack Horizon 9.x through 9.1.1, 10.x through 10.0.2, and 11.0.0 allows remote authenticated administrators to conduct XSS attacks via a crafted federation mapping.  Assigned (20170403)  None (candidate not yet proposed)    View
104219  CVE-2017-7399  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170401)  None (candidate not yet proposed)    View
104218  CVE-2017-7398  Candidate  D-Link DIR-615 HW: T1 FW:20.09 is vulnerable to Cross-Site Request Forgery (CSRF) vulnerability. This enables an attacker to perform an unwanted action on a wireless router for which the user/admin is currently authenticated, as demonstrated by changing the Security option from WPA2 to None, or changing the hiddenSSID parameter, SSID parameter, or a security-option password.  Assigned (20170401)  None (candidate not yet proposed)    View
104217  CVE-2017-7397  Candidate  ** DISPUTED ** BackBox Linux 4.6 allows remote attackers to cause a denial of service (ksoftirqd CPU consumption) via a flood of packets with Martian source IP addresses (as defined in RFC 1812 section 5.3.7). This product enables net.ipv4.conf.all.log_martians by default. NOTE: the vendor reports "It has been proved that this vulnerability has no foundation and it is totally fake and based on false assumptions."  Assigned (20170331)  None (candidate not yet proposed)    View
104216  CVE-2017-7396  Candidate  In TigerVNC 1.7.1 (CConnection.cxx CConnection::CConnection), an unauthenticated client can cause a small memory leak in the server.  Assigned (20170331)  None (candidate not yet proposed)    View

Page 100 of 20943, showing 5 records out of 104715 total, starting on record 496, ending on 500

Actions