CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
104400 | CVE-2017-7580 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20170407) | None (candidate not yet proposed) | View | |
104399 | CVE-2017-7579 | Candidate | inc/PMF/Faq.php in phpMyFAQ before 2.9.7 has XSS in the question field. | Assigned (20170407) | None (candidate not yet proposed) | View | |
104398 | CVE-2017-7578 | Candidate | Multiple heap-based buffer overflows in parser.c in libming 0.4.7 allow remote attackers to cause a denial of service (listswf application crash) or possibly have unspecified other impact via a crafted SWF file. NOTE: this issue exists because of an incomplete fix for CVE-2016-9831. | Assigned (20170407) | None (candidate not yet proposed) | View | |
104397 | CVE-2017-7577 | Candidate | XiongMai uc-httpd has directory traversal allowing the reading of arbitrary files via a "GET ../" HTTP request. | Assigned (20170406) | None (candidate not yet proposed) | View | |
104396 | CVE-2017-7576 | Candidate | DragonWave Horizon 1.01.03 wireless radios have hardcoded login credentials (such as the username of energetic and password of wireless) meant to allow the vendor to access the devices. These credentials can be used in the web interface or by connecting to the device via TELNET. This is fixed in recent versions including 1.4.8. | Assigned (20170406) | None (candidate not yet proposed) | View |
Page 64 of 20943, showing 5 records out of 104715 total, starting on record 316, ending on 320