CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
103350 | CVE-2017-6530 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20170307) | None (candidate not yet proposed) | View | |
103349 | CVE-2017-6529 | Candidate | An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is vulnerable to session hijacking by guessing the UID parameter. | Assigned (20170307) | None (candidate not yet proposed) | View | |
103348 | CVE-2017-6528 | Candidate | An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is affected by plaintext password storage (the /home/dna/spool/.pfile file). | Assigned (20170307) | None (candidate not yet proposed) | View | |
103347 | CVE-2017-6527 | Candidate | An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is vulnerable to a NUL-terminated directory traversal attack allowing an unauthenticated attacker to access system files readable by the web server user (by using the viewAppletFsa.cgi seqID parameter). | Assigned (20170307) | None (candidate not yet proposed) | View | |
103346 | CVE-2017-6526 | Candidate | An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is vulnerable to unauthenticated command execution through an improperly protected administrative web shell (cgi-bin/dna/sysAdmin.cgi POST requests). | Assigned (20170307) | None (candidate not yet proposed) | View |
Page 274 of 20943, showing 5 records out of 104715 total, starting on record 1366, ending on 1370