CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102014  CVE-2017-5194  Candidate  Use-after-free vulnerability in Irssi before 0.8.21 allows remote attackers to cause a denial of service (crash) via an invalid nick message.  Assigned (20170106)  None (candidate not yet proposed)    View
102015  CVE-2017-5195  Candidate  Irssi 0.8.17 before 0.8.21 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted ANSI x8 color code.  Assigned (20170106)  None (candidate not yet proposed)    View
102016  CVE-2017-5196  Candidate  Irssi 0.8.18 before 0.8.21 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via vectors involving strings that are not UTF8.  Assigned (20170106)  None (candidate not yet proposed)    View
102017  CVE-2017-5197  Candidate  There is XSS in SilverStripe CMS before 3.4.4 and 3.5.x before 3.5.2. The attack vector is a page name. An example payload is a crafted JavaScript event handler within a malformed SVG element.  Assigned (20170106)  None (candidate not yet proposed)    View
102018  CVE-2017-5198  Candidate  SolarWinds LEM (aka SIEM) before 6.3.1 has an incorrect sudo configuration, which allows local users to obtain root access by editing /usr/local/contego/scripts/hostname.sh.  Assigned (20170106)  None (candidate not yet proposed)    View

Page 19763 of 20943, showing 5 records out of 104715 total, starting on record 98811, ending on 98815

Actions