CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102403  CVE-2017-5583  Candidate  The Management Web Interface in Palo Alto Networks PAN-OS before 6.1.16, 7.0.x before 7.0.13, and 7.1.x before 7.1.8 allows remote authenticated users to read arbitrary files via unspecified vectors.  Assigned (20170125)  None (candidate not yet proposed)    View
102404  CVE-2017-5584  Candidate  Cross-site scripting (XSS) vulnerability in the Management Web Interface in Palo Alto Networks PAN-OS 5.1, 6.x before 6.1.16, 7.0.x before 7.0.13, and 7.1.x before 7.1.8 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20170125)  None (candidate not yet proposed)    View
102405  CVE-2017-5585  Candidate  OpenText Documentum Content Server (formerly EMC Documentum Content Server) 7.3, when PostgreSQL Database is used and return_top_results_row_based config option is false, does not properly restrict DQL hints, which allows remote authenticated users to conduct DQL injection attacks and execute arbitrary DML or DDL commands via a crafted request. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-2520.  Assigned (20170125)  None (candidate not yet proposed)    View
102406  CVE-2017-5586  Candidate  OpenText Documentum D2 (formerly EMC Documentum D2) 4.x allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the BeanShell (bsh) and Apache Commons Collections (ACC) libraries.  Assigned (20170125)  None (candidate not yet proposed)    View
102407  CVE-2017-5587  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170125)  None (candidate not yet proposed)    View

Page 1093 of 20943, showing 5 records out of 104715 total, starting on record 5461, ending on 5465

Actions