CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102420  CVE-2017-5600  Candidate  The Data Warehouse component in NetApp OnCommand Insight before 7.2.3 allows remote attackers to obtain administrative access by leveraging a default privileged account.  Assigned (20170127)  None (candidate not yet proposed)    View
102421  CVE-2017-5601  Candidate  An error in the lha_read_file_header_1() function (archive_read_support_format_lha.c) in libarchive 3.2.2 allows remote attackers to trigger an out-of-bounds read memory access and subsequently cause a crash via a specially crafted archive.  Assigned (20170127)  None (candidate not yet proposed)    View
102422  CVE-2017-5602  Candidate  An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application"s display. This allows for various kinds of social engineering attacks. This CVE is for jappix 1.0.0 to 1.1.6.  Assigned (20170128)  None (candidate not yet proposed)    View
102423  CVE-2017-5603  Candidate  An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application"s display. This allows for various kinds of social engineering attacks. This CVE is for Jitsi 2.5.5061 - 2.9.5544.  Assigned (20170128)  None (candidate not yet proposed)    View
102424  CVE-2017-5604  Candidate  An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application"s display. This allows for various kinds of social engineering attacks. This CVE is for mcabber 1.0.0 - 1.0.4.  Assigned (20170128)  None (candidate not yet proposed)    View

Page 19853 of 20943, showing 5 records out of 104715 total, starting on record 99261, ending on 99265

Actions