CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104075  CVE-2017-7255  Candidate  XSS exists in the CMS Made Simple (CMSMS) 2.1.6 "Content-->News-->Add Article" feature via the m1_title parameter. Someone must login to conduct the attack.  Assigned (20170324)  None (candidate not yet proposed)    View
104074  CVE-2017-7254  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170324)  None (candidate not yet proposed)    View
104073  CVE-2017-7253  Candidate  Dahua IP Camera devices 3.200.0001.6 can be exploited via these steps: 1. Use the default low-privilege credentials to list all users via a request to a certain URI. 2. Login to the IP camera with admin credentials so as to obtain full control of the target IP camera. During exploitation, the first JSON object encountered has a "Component error: login challenge!" message. The second JSON object encountered has a result indicating a successful admin login.  Assigned (20170324)  None (candidate not yet proposed)    View
104072  CVE-2017-7252  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170324)  None (candidate not yet proposed)    View
104071  CVE-2017-7251  Candidate  A Cross-Site Scripting (XSS) was discovered in pi-engine/pi 2.5.0. The vulnerability exists due to insufficient filtration of user-supplied data (preview) passed to the "pi-develop/www/script/editor/markitup/preview/markdown.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.  Assigned (20170323)  None (candidate not yet proposed)    View

Page 129 of 20943, showing 5 records out of 104715 total, starting on record 641, ending on 645

Actions