CVE List

Id CVE No. Status Description Phase Votes Comments Actions
103625  CVE-2017-6805  Candidate  Directory traversal vulnerability in the TFTP server in MobaXterm Personal Edition 9.4 allows remote attackers to read arbitrary files via a .. (dot dot) in a GET command.  Assigned (20170310)  None (candidate not yet proposed)    View
103626  CVE-2017-6806  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170310)  None (candidate not yet proposed)    View
103627  CVE-2017-6807  Candidate  mod_auth_mellon before 0.13.1 is vulnerable to a Cross-Site Session Transfer attack, where a user with access to one web site running on a server can copy their session cookie to a different web site on the same server to get access to that site.  Assigned (20170310)  None (candidate not yet proposed)    View
103628  CVE-2017-6808  Candidate  paintballrefjosh/MaNGOSWebV4 4.0.8 is vulnerable to a reflected XSS in inc/admin/template_files/admin.faq.php (id parameter).  Assigned (20170311)  None (candidate not yet proposed)    View
103629  CVE-2017-6809  Candidate  paintballrefjosh/MaNGOSWebV4 4.0.8 is vulnerable to a reflected XSS in inc/admin/template_files/admin.donate.php (id parameter).  Assigned (20170311)  None (candidate not yet proposed)    View

Page 20120 of 20943, showing 5 records out of 104715 total, starting on record 100596, ending on 100600

Actions