CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
103160 | CVE-2017-6340 | Candidate | Trend Micro InterScan Web Security Virtual Appliance (IWSVA) 6.5 before CP 1746 does not sanitize a rest/commonlog/report/template name field, which allows a "Reports Only" user to inject malicious JavaScript while creating a new report. Additionally, IWSVA implements incorrect access control that allows any authenticated, remote user (even with low privileges like "Auditor") to create or modify reports, and consequently take advantage of this XSS vulnerability. The JavaScript is executed when victims visit reports or auditlog pages. | Assigned (20170226) | None (candidate not yet proposed) | View | |
37880 | CVE-2009-0445 | Candidate | SQL injection vulnerability in index.php in Dreampics Gallery Builder allows remote attackers to execute arbitrary SQL commands via the exhibition_id parameter in a gallery.viewPhotos action. | Assigned (20090205) | None (candidate not yet proposed) | View | |
103416 | CVE-2017-6596 | Candidate | partclone.chkimg in partclone 0.2.89 is prone to a heap-based buffer overflow vulnerability due to insufficient validation of the partclone image header. An attacker may be able to launch a "Denial of Service attack" in the context of the user running the affected application. | Assigned (20170309) | None (candidate not yet proposed) | View | |
38136 | CVE-2009-0701 | Candidate | Multiple PHP remote file inclusion vulnerabilities in index.php in Cybershade CMS 0.2b, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the (1) THEME_header and (2) THEME_footer parameters. | Assigned (20090223) | None (candidate not yet proposed) | View | |
103672 | CVE-2017-6852 | Candidate | Heap-based buffer overflow in the jpc_dec_decodepkt function in jpc_t2dec.c in JasPer 2.0.10 allows remote attackers to have unspecified impact via a crafted image. | Assigned (20170312) | None (candidate not yet proposed) | View |
Page 20345 of 20943, showing 5 records out of 104715 total, starting on record 101721, ending on 101725