CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
104443 | CVE-2017-7623 | Candidate | The iwmiffr_convert_row32 function in imagew-miff.c in libimageworsener.a in ImageWorsener 1.3.0 allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file. | Assigned (20170410) | None (candidate not yet proposed) | View | |
104444 | CVE-2017-7624 | Candidate | The iw_read_bmp_file function in imagew-bmp.c in libimageworsener.a in ImageWorsener 1.3.0 allows remote attackers to consume an amount of available memory via a crafted file. | Assigned (20170410) | None (candidate not yet proposed) | View | |
104445 | CVE-2017-7625 | Candidate | In Fiyo CMS 2.x through 2.0.7, attackers may upload a webshell via the content parameter to "/dapur/apps/app_theme/libs/save_file.php" and then execute code. | Assigned (20170410) | None (candidate not yet proposed) | View | |
104446 | CVE-2017-7626 | Candidate | The "Smart related articles" extension 1.1 for Joomla! has XSS in dialog.php (n_art,type in GET Method). | Assigned (20170410) | None (candidate not yet proposed) | View | |
104447 | CVE-2017-7627 | Candidate | The "Smart related articles" extension 1.1 for Joomla! does not prevent direct requests to dialog.php (there is a missing _JEXEC check). | Assigned (20170410) | None (candidate not yet proposed) | View |
Page 637 of 20943, showing 5 records out of 104715 total, starting on record 3181, ending on 3185