CVE List

Id CVE No. Status Description Phase Votes Comments Actions
103350  CVE-2017-6530  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170307)  None (candidate not yet proposed)    View
103349  CVE-2017-6529  Candidate  An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is vulnerable to session hijacking by guessing the UID parameter.  Assigned (20170307)  None (candidate not yet proposed)    View
103348  CVE-2017-6528  Candidate  An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is affected by plaintext password storage (the /home/dna/spool/.pfile file).  Assigned (20170307)  None (candidate not yet proposed)    View
103347  CVE-2017-6527  Candidate  An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is vulnerable to a NUL-terminated directory traversal attack allowing an unauthenticated attacker to access system files readable by the web server user (by using the viewAppletFsa.cgi seqID parameter).  Assigned (20170307)  None (candidate not yet proposed)    View
103346  CVE-2017-6526  Candidate  An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is vulnerable to unauthenticated command execution through an improperly protected administrative web shell (cgi-bin/dna/sysAdmin.cgi POST requests).  Assigned (20170307)  None (candidate not yet proposed)    View

Page 274 of 20943, showing 5 records out of 104715 total, starting on record 1366, ending on 1370

Actions