CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102393  CVE-2017-5573  Candidate  An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can cancel tasks of other administrators.  Assigned (20170123)  None (candidate not yet proposed)    View
102394  CVE-2017-5574  Candidate  SQL injection vulnerability in register.php in GeniXCMS before 1.0.0 allows unauthenticated users to execute arbitrary SQL commands via the activation parameter.  Assigned (20170123)  None (candidate not yet proposed)    View
102395  CVE-2017-5575  Candidate  SQL injection vulnerability in inc/lib/Options.class.php in GeniXCMS before 1.0.0 allows remote attackers to execute arbitrary SQL commands via the modules parameter.  Assigned (20170123)  None (candidate not yet proposed)    View
87664  CVE-2016-10158  Candidate  The exif_convert_any_to_int function in ext/exif/exif.c in PHP before 5.6.30, 7.0.x before 7.0.15, and 7.1.x before 7.1.1 allows remote attackers to cause a denial of service (application crash) via crafted EXIF data that triggers an attempt to divide the minimum representable negative integer by -1.  Assigned (20170124)  None (candidate not yet proposed)    View
87665  CVE-2016-10159  Candidate  Integer overflow in the phar_parse_pharfile function in ext/phar/phar.c in PHP before 5.6.30 and 7.0.x before 7.0.15 allows remote attackers to cause a denial of service (memory consumption or application crash) via a truncated manifest entry in a PHAR archive.  Assigned (20170124)  None (candidate not yet proposed)    View

Page 19846 of 20943, showing 5 records out of 104715 total, starting on record 99226, ending on 99230

Actions