CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
102393 | CVE-2017-5573 | Candidate | An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can cancel tasks of other administrators. | Assigned (20170123) | None (candidate not yet proposed) | View | |
102394 | CVE-2017-5574 | Candidate | SQL injection vulnerability in register.php in GeniXCMS before 1.0.0 allows unauthenticated users to execute arbitrary SQL commands via the activation parameter. | Assigned (20170123) | None (candidate not yet proposed) | View | |
102395 | CVE-2017-5575 | Candidate | SQL injection vulnerability in inc/lib/Options.class.php in GeniXCMS before 1.0.0 allows remote attackers to execute arbitrary SQL commands via the modules parameter. | Assigned (20170123) | None (candidate not yet proposed) | View | |
87664 | CVE-2016-10158 | Candidate | The exif_convert_any_to_int function in ext/exif/exif.c in PHP before 5.6.30, 7.0.x before 7.0.15, and 7.1.x before 7.1.1 allows remote attackers to cause a denial of service (application crash) via crafted EXIF data that triggers an attempt to divide the minimum representable negative integer by -1. | Assigned (20170124) | None (candidate not yet proposed) | View | |
87665 | CVE-2016-10159 | Candidate | Integer overflow in the phar_parse_pharfile function in ext/phar/phar.c in PHP before 5.6.30 and 7.0.x before 7.0.15 allows remote attackers to cause a denial of service (memory consumption or application crash) via a truncated manifest entry in a PHAR archive. | Assigned (20170124) | None (candidate not yet proposed) | View |
Page 19846 of 20943, showing 5 records out of 104715 total, starting on record 99226, ending on 99230