CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104025  CVE-2017-7205  Candidate  A Cross-Site Scripting (XSS) was discovered in GamePanelX-V3 3.0.12. The vulnerability exists due to insufficient filtration of user-supplied data (a) passed to the "GamePanelX-V3-master/ajax/ajax.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.  Assigned (20170321)  None (candidate not yet proposed)    View
104026  CVE-2017-7206  Candidate  The ff_h2645_extract_rbsp function in libavcodec in libav 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read) or obtain sensitive information from process memory via a crafted h264 video file.  Assigned (20170321)  None (candidate not yet proposed)    View
104027  CVE-2017-7207  Candidate  The mem_get_bits_rectangle function in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted PostScript document.  Assigned (20170321)  None (candidate not yet proposed)    View
104028  CVE-2017-7208  Candidate  The decode_residual function in libavcodec in libav 9.21 allows remote attackers to cause a denial of service (buffer over-read) or obtain sensitive information from process memory via a crafted h264 video file.  Assigned (20170321)  None (candidate not yet proposed)    View
104029  CVE-2017-7209  Candidate  The dump_section_as_bytes function in readelf in GNU Binutils 2.28 accesses a NULL pointer while reading section contents in a corrupt binary, leading to a program crash.  Assigned (20170321)  None (candidate not yet proposed)    View

Page 20202 of 20943, showing 5 records out of 104715 total, starting on record 101006, ending on 101010

Actions