CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104385  CVE-2017-7565  Candidate  Splunk Hadoop Connect App has a path traversal vulnerability that allows remote authenticated users to execute arbitrary code, aka ERP-2041.  Assigned (20170406)  None (candidate not yet proposed)    View
87490  CVE-2016-1000307  Candidate  Multiple Cross Site Scripting (XSS) Vulnerabilities in ClipBucket v2.8.1 and probably prior allow Remote Attackers to inject arbitrary web script or HTML via (1) profile_desc, about_me, schools, occupation, companies, hobbies, fav_movies, fav_music, fav_books parameters to ProfileSettings page; (2) note parameter to PersonalNotes Section; (3) closed_msg, description, allowed_types parameters to WebsiteConfigurations Section. NOTE: the collection_description vector is already covered by CVE-2015-4673.  Assigned (20170406)  None (candidate not yet proposed)    View
104386  CVE-2017-7566  Candidate  MyBB before 1.8.11 allows remote attackers to bypass an SSRF protection mechanism.  Assigned (20170406)  None (candidate not yet proposed)    View
104387  CVE-2017-7567  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170406)  None (candidate not yet proposed)    View
104388  CVE-2017-7568  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170406)  None (candidate not yet proposed)    View

Page 647 of 20943, showing 5 records out of 104715 total, starting on record 3231, ending on 3235

Actions