CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
87696 | CVE-2016-10187 | Candidate | The E-book viewer in calibre before 2.75 allows remote attackers to read arbitrary files via a crafted epub file with JavaScript. | Assigned (20170131) | None (candidate not yet proposed) | View | |
87697 | CVE-2016-10188 | Candidate | Use-after-free vulnerability in bitlbee-libpurple before 3.5 allows remote servers to cause a denial of service (crash) or possibly execute arbitrary code by causing a file transfer connection to expire. | Assigned (20170131) | None (candidate not yet proposed) | View | |
87698 | CVE-2016-10189 | Candidate | BitlBee before 3.5 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly execute arbitrary code via a file transfer request for a contact that is not in the contact list. | Assigned (20170131) | None (candidate not yet proposed) | View | |
102437 | CVE-2017-5617 | Candidate | The SVG Salamander (aka svgSalamander) library, when used in a web application, allows remote attackers to conduct server-side request forgery (SSRF) attacks via an xlink:href attribute in an SVG file. | Assigned (20170129) | None (candidate not yet proposed) | View | |
102438 | CVE-2017-5618 | Candidate | GNU screen before 4.5.1 allows local users to modify arbitrary files and consequently gain root privileges by leveraging improper checking of logfile permissions. | Assigned (20170129) | None (candidate not yet proposed) | View |
Page 1074 of 20943, showing 5 records out of 104715 total, starting on record 5366, ending on 5370