CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
103230 | CVE-2017-6410 | Candidate | kpac/script.cpp in KDE kio before 5.32 and kdelibs before 4.14.30 calls the PAC FindProxyForURL function with a full https URL (potentially including Basic Authentication credentials, a query string, or PATH_INFO), which allows remote attackers to obtain sensitive information via a crafted PAC file. | Assigned (20170301) | None (candidate not yet proposed) | View | |
103229 | CVE-2017-6409 | Candidate | An issue was discovered in Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier. Unauthenticated CORBA interfaces permit inappropriate access. | Assigned (20170301) | None (candidate not yet proposed) | View | |
103228 | CVE-2017-6408 | Candidate | An issue was discovered in Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier. A local-privilege-escalation race condition in pbx_exchange can occur when a local user connects to a socket before permissions are secured. | Assigned (20170301) | None (candidate not yet proposed) | View | |
103227 | CVE-2017-6407 | Candidate | An issue was discovered in Veritas NetBackup Before 7.7.2 and NetBackup Appliance Before 2.7.2. Privileged remote command execution on NetBackup Server and Client (on the server or a connected client) can occur. | Assigned (20170301) | None (candidate not yet proposed) | View | |
103226 | CVE-2017-6406 | Candidate | An issue was discovered in Veritas NetBackup Before 7.7.2 and NetBackup Appliance Before 2.7.2. Arbitrary privileged command execution, using whitelist directory escape with "../" substrings, can occur. | Assigned (20170301) | None (candidate not yet proposed) | View |
Page 298 of 20943, showing 5 records out of 104715 total, starting on record 1486, ending on 1490