CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104400  CVE-2017-7580  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170407)  None (candidate not yet proposed)    View
104399  CVE-2017-7579  Candidate  inc/PMF/Faq.php in phpMyFAQ before 2.9.7 has XSS in the question field.  Assigned (20170407)  None (candidate not yet proposed)    View
104398  CVE-2017-7578  Candidate  Multiple heap-based buffer overflows in parser.c in libming 0.4.7 allow remote attackers to cause a denial of service (listswf application crash) or possibly have unspecified other impact via a crafted SWF file. NOTE: this issue exists because of an incomplete fix for CVE-2016-9831.  Assigned (20170407)  None (candidate not yet proposed)    View
104397  CVE-2017-7577  Candidate  XiongMai uc-httpd has directory traversal allowing the reading of arbitrary files via a "GET ../" HTTP request.  Assigned (20170406)  None (candidate not yet proposed)    View
104396  CVE-2017-7576  Candidate  DragonWave Horizon 1.01.03 wireless radios have hardcoded login credentials (such as the username of energetic and password of wireless) meant to allow the vendor to access the devices. These credentials can be used in the web interface or by connecting to the device via TELNET. This is fixed in recent versions including 1.4.8.  Assigned (20170406)  None (candidate not yet proposed)    View

Page 64 of 20943, showing 5 records out of 104715 total, starting on record 316, ending on 320

Actions