CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104221  CVE-2017-7401  Candidate  Incorrect interaction of the parse_packet() and parse_part_sign_sha256() functions in network.c in collectd 5.7.1 and earlier allows remote attackers to cause a denial of service (infinite loop) of a collectd instance (configured with "SecurityLevel None" and with empty "AuthFile" options) via a crafted UDP packet.  Assigned (20170403)  None (candidate not yet proposed)    View
104222  CVE-2017-7402  Candidate  Pixie 1.0.4 allows remote authenticated users to upload and execute arbitrary PHP code via the POST data in an admin/index.php?s=publish&x=filemanager request for a filename with a double extension, such as a .jpg.php file with Content-Type of image/jpeg.  Assigned (20170403)  None (candidate not yet proposed)    View
104223  CVE-2017-7403  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170403)  None (candidate not yet proposed)    View
104224  CVE-2017-7404  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170403)  None (candidate not yet proposed)    View
104225  CVE-2017-7405  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170403)  None (candidate not yet proposed)    View

Page 20845 of 20943, showing 5 records out of 104715 total, starting on record 104221, ending on 104225

Actions