CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
104229 | CVE-2017-7409 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20170403) | None (candidate not yet proposed) | View | |
104230 | CVE-2017-7410 | Candidate | Multiple SQL injection vulnerabilities in account/signup.php and account/signup2.php in WebsiteBaker 2.10.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) username, (2) display_name parameter. | Assigned (20170403) | None (candidate not yet proposed) | View | |
104231 | CVE-2017-7411 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20170403) | None (candidate not yet proposed) | View | |
104232 | CVE-2017-7412 | Candidate | NixOS 17.03 before 17.03.887 has a world-writable Docker socket, which allows local users to gain privileges by executing docker commands. | Assigned (20170403) | None (candidate not yet proposed) | View | |
104233 | CVE-2017-7413 | Candidate | In Horde_Crypt before 2.7.6, as used in Horde Groupware Webmail Edition through 5.2.17, OS Command Injection can occur if the attacker is an authenticated Horde Webmail user, has PGP features enabled in their preferences, and attempts to encrypt an email addressed to a maliciously crafted email address. | Assigned (20170403) | None (candidate not yet proposed) | View |
Page 20264 of 20943, showing 5 records out of 104715 total, starting on record 101316, ending on 101320