CVE List

Id CVE No. Status Description Phase Votes Comments Actions
103298  CVE-2017-6478  Candidate  paintballrefjosh/MaNGOSWebV4 before 4.0.8 is vulnerable to a reflected XSS in install/index.php (step parameter).  Assigned (20170305)  None (candidate not yet proposed)    View
103299  CVE-2017-6479  Candidate  FenixHosting/fenix-open-source before 2017-03-04 is vulnerable to a reflected XSS in forums/search.php (search-by-topic parameter).  Assigned (20170305)  None (candidate not yet proposed)    View
103300  CVE-2017-6480  Candidate  groovel/cmsgroovel before 3.3.7-beta is vulnerable to a reflected XSS in commons/browser.php (path parameter).  Assigned (20170305)  None (candidate not yet proposed)    View
103301  CVE-2017-6481  Candidate  Multiple Cross-Site Scripting (XSS) issues were discovered in phpipam 1.2. The vulnerabilities exist due to insufficient filtration of user-supplied data passed to several pages (instructions in app/admin/instructions/preview.php; subnetId in app/admin/powerDNS/refresh-ptr-records.php). An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.  Assigned (20170305)  None (candidate not yet proposed)    View
103302  CVE-2017-6482  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-6394. Reason: This candidate is a duplicate of CVE-2017-6394. Notes: All CVE users should reference CVE-2017-6394 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20170305)  None (candidate not yet proposed)    View

Page 20054 of 20943, showing 5 records out of 104715 total, starting on record 100266, ending on 100270

Actions