CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102148  CVE-2017-5328  Candidate  Palo Alto Networks Terminal Services Agent before 7.0.7 allows attackers to spoof arbitrary users via unspecified vectors.  Assigned (20170109)  None (candidate not yet proposed)    View
36868  CVE-2008-6751  Candidate  Unrestricted file upload vulnerability in index.php in the Twitter Clone (TClone) plugin for ReVou Micro Blogging allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in settings/my_photo.  Assigned (20090424)  None (candidate not yet proposed)    View
102404  CVE-2017-5584  Candidate  Cross-site scripting (XSS) vulnerability in the Management Web Interface in Palo Alto Networks PAN-OS 5.1, 6.x before 6.1.16, 7.0.x before 7.0.13, and 7.1.x before 7.1.8 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20170125)  None (candidate not yet proposed)    View
37124  CVE-2008-7007  Candidate  Free PHP VX Guestbook 1.06 allows remote attackers to bypass authentication and gain administrative access by setting the (1) admin_name and (2) admin_pass cookie values to 1.  Assigned (20090818)  None (candidate not yet proposed)    View
102660  CVE-2017-5840  Candidate  The qtdemux_parse_samples function in gst/isomp4/qtdemux.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (out-of-bounds heap read) via vectors involving the current stts index.  Assigned (20170201)  None (candidate not yet proposed)    View

Page 380 of 20943, showing 5 records out of 104715 total, starting on record 1896, ending on 1900

Actions