CVE List

Id CVE No. Status Description Phase Votes Comments Actions
103230  CVE-2017-6410  Candidate  kpac/script.cpp in KDE kio before 5.32 and kdelibs before 4.14.30 calls the PAC FindProxyForURL function with a full https URL (potentially including Basic Authentication credentials, a query string, or PATH_INFO), which allows remote attackers to obtain sensitive information via a crafted PAC file.  Assigned (20170301)  None (candidate not yet proposed)    View
103229  CVE-2017-6409  Candidate  An issue was discovered in Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier. Unauthenticated CORBA interfaces permit inappropriate access.  Assigned (20170301)  None (candidate not yet proposed)    View
103228  CVE-2017-6408  Candidate  An issue was discovered in Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier. A local-privilege-escalation race condition in pbx_exchange can occur when a local user connects to a socket before permissions are secured.  Assigned (20170301)  None (candidate not yet proposed)    View
103227  CVE-2017-6407  Candidate  An issue was discovered in Veritas NetBackup Before 7.7.2 and NetBackup Appliance Before 2.7.2. Privileged remote command execution on NetBackup Server and Client (on the server or a connected client) can occur.  Assigned (20170301)  None (candidate not yet proposed)    View
103226  CVE-2017-6406  Candidate  An issue was discovered in Veritas NetBackup Before 7.7.2 and NetBackup Appliance Before 2.7.2. Arbitrary privileged command execution, using whitelist directory escape with "../" substrings, can occur.  Assigned (20170301)  None (candidate not yet proposed)    View

Page 298 of 20943, showing 5 records out of 104715 total, starting on record 1486, ending on 1490

Actions