CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
104540 | CVE-2017-7720 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20170412) | None (candidate not yet proposed) | View | |
104539 | CVE-2017-7719 | Candidate | SQL injection in the Spider Event Calendar (aka spider-event-calendar) plugin before 1.5.52 for WordPress is exploitable with the order_by parameter to calendar_functions.php or widget_Theme_functions.php, related to front_end/frontend_functions.php. | Assigned (20170412) | None (candidate not yet proposed) | View | |
104538 | CVE-2017-7718 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20170412) | None (candidate not yet proposed) | View | |
104537 | CVE-2017-7717 | Candidate | SQL injection vulnerability in the getUserUddiElements method in the ES UDDI component in SAP NetWeaver AS Java 7.4 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, aka SAP Security Note 2356504. | Assigned (20170412) | None (candidate not yet proposed) | View | |
104536 | CVE-2017-7716 | Candidate | The read_u32_leb128 function in libr/util/uleb128.c in radare2 1.3.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted Web Assembly file. | Assigned (20170412) | None (candidate not yet proposed) | View |
Page 36 of 20943, showing 5 records out of 104715 total, starting on record 176, ending on 180