CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104410  CVE-2017-7590  Candidate  OpenIDM through 4.0.0 and 4.5.0 is vulnerable to persistent cross-site scripting (XSS) attacks within the Admin UI, as demonstrated by a crafted Managed Object Name.  Assigned (20170408)  None (candidate not yet proposed)    View
104409  CVE-2017-7589  Candidate  In OpenIDM through 4.0.0 before 4.5.0, the info endpoint may leak sensitive information upon a request by the "anonymous" user, as demonstrated by responses with a 200 HTTP status code and a JSON object containing IP address strings. This is related to a missing access-control check in bin/defaults/script/info/login.js.  Assigned (20170408)  None (candidate not yet proposed)    View
104408  CVE-2017-7588  Candidate  On certain Brother devices, authorization is mishandled by including a valid AuthCookie cookie in the HTTP response to a failed login attempt. Affected models are: MFC-J6973CDW MFC-J4420DW MFC-8710DW MFC-J4620DW MFC-L8850CDW MFC-J3720 MFC-J6520DW MFC-L2740DW MFC-J5910DW MFC-J6920DW MFC-L2700DW MFC-9130CW MFC-9330CDW MFC-9340CDW MFC-J5620DW MFC-J6720DW MFC-L8600CDW MFC-L9550CDW MFC-L2720DW DCP-L2540DW DCP-L2520DW HL-3140CW HL-3170CDW HL-3180CDW HL-L8350CDW HL-L2380DW ADS-2500W ADS-1000W ADS-1500W.  Assigned (20170408)  None (candidate not yet proposed)    View
104407  CVE-2017-7587  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170407)  None (candidate not yet proposed)    View
104406  CVE-2017-7586  Candidate  In libsndfile before 1.0.28, an error in the "header_read()" function (common.c) when handling ID3 tags can be exploited to cause a stack-based buffer overflow via a specially crafted FLAC file.  Assigned (20170407)  None (candidate not yet proposed)    View

Page 62 of 20943, showing 5 records out of 104715 total, starting on record 306, ending on 310

Actions