CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104540  CVE-2017-7720  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170412)  None (candidate not yet proposed)    View
104539  CVE-2017-7719  Candidate  SQL injection in the Spider Event Calendar (aka spider-event-calendar) plugin before 1.5.52 for WordPress is exploitable with the order_by parameter to calendar_functions.php or widget_Theme_functions.php, related to front_end/frontend_functions.php.  Assigned (20170412)  None (candidate not yet proposed)    View
104538  CVE-2017-7718  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170412)  None (candidate not yet proposed)    View
104537  CVE-2017-7717  Candidate  SQL injection vulnerability in the getUserUddiElements method in the ES UDDI component in SAP NetWeaver AS Java 7.4 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, aka SAP Security Note 2356504.  Assigned (20170412)  None (candidate not yet proposed)    View
104536  CVE-2017-7716  Candidate  The read_u32_leb128 function in libr/util/uleb128.c in radare2 1.3.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted Web Assembly file.  Assigned (20170412)  None (candidate not yet proposed)    View

Page 36 of 20943, showing 5 records out of 104715 total, starting on record 176, ending on 180

Actions