CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104062  CVE-2017-7242  Candidate  Multiple Cross-Site Scripting (XSS) were discovered in admin/modules components in SLiMS 7 Cendana through 2017-03-23: the keywords parameter to bibliography/checkout_item.php, bibliography/dl_print.php, bibliography/item.php, bibliography/item_barcode_generator.php, bibliography/printed_card.php, circulation/loan_rules.php, master_file/author.php, master_file/coll_type.php, and master_file/doc_language.php and the quickReturnID field to circulation/ajax_action.php.  Assigned (20170323)  None (candidate not yet proposed)    View
104063  CVE-2017-7243  Candidate  Eclipse tinydtls 0.8.2 for Eclipse IoT allows remote attackers to cause a denial of service (DTLS peer crash) by sending a "Change cipher spec" packet without pre-handshake.  Assigned (20170323)  None (candidate not yet proposed)    View
104064  CVE-2017-7244  Candidate  The _pcre32_xclass function in pcre_xclass.c in libpcre1 in PCRE 8.40 allows remote attackers to cause a denial of service (invalid memory read) via a crafted file.  Assigned (20170323)  None (candidate not yet proposed)    View
104065  CVE-2017-7245  Candidate  Stack-based buffer overflow in the pcre32_copy_substring function in pcre_get.c in libpcre1 in PCRE 8.40 allows remote attackers to cause a denial of service (WRITE of size 4) or possibly have unspecified other impact via a crafted file.  Assigned (20170323)  None (candidate not yet proposed)    View
104066  CVE-2017-7246  Candidate  Stack-based buffer overflow in the pcre32_copy_substring function in pcre_get.c in libpcre1 in PCRE 8.40 allows remote attackers to cause a denial of service (WRITE of size 268) or possibly have unspecified other impact via a crafted file.  Assigned (20170323)  None (candidate not yet proposed)    View

Page 20210 of 20943, showing 5 records out of 104715 total, starting on record 101046, ending on 101050

Actions