CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102300  CVE-2017-5480  Candidate  Directory traversal vulnerability in inc/files/files.ctrl.php in b2evolution through 6.8.3 allows remote authenticated users to read or delete arbitrary files by leveraging back-office access to provide a .. (dot dot) in the fm_selected array parameter.  Assigned (20170114)  None (candidate not yet proposed)    View
102299  CVE-2017-5479  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170114)  None (candidate not yet proposed)    View
102298  CVE-2017-5478  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170114)  None (candidate not yet proposed)    View
102297  CVE-2017-5477  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170114)  None (candidate not yet proposed)    View
102296  CVE-2017-5476  Candidate  Serendipity through 2.0.5 allows CSRF for the installation of an event plugin or a sidebar plugin.  Assigned (20170113)  None (candidate not yet proposed)    View

Page 484 of 20943, showing 5 records out of 104715 total, starting on record 2416, ending on 2420

Actions