CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104390  CVE-2017-7570  Candidate  PivotX 2.3.11 allows remote authenticated Advanced users to execute arbitrary PHP code by performing an upload with a safe file extension (such as .jpg) and then invoking the duplicate function to change to the .php extension.  Assigned (20170406)  None (candidate not yet proposed)    View
104389  CVE-2017-7569  Candidate  In vBulletin before 5.3.0, remote attackers can bypass the CVE-2016-6483 patch and conduct SSRF attacks by leveraging the behavior of the PHP parse_url function, aka VBV-17037.  Assigned (20170406)  None (candidate not yet proposed)    View
104388  CVE-2017-7568  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170406)  None (candidate not yet proposed)    View
104387  CVE-2017-7567  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170406)  None (candidate not yet proposed)    View
104386  CVE-2017-7566  Candidate  MyBB before 1.8.11 allows remote attackers to bypass an SSRF protection mechanism.  Assigned (20170406)  None (candidate not yet proposed)    View

Page 66 of 20943, showing 5 records out of 104715 total, starting on record 326, ending on 330

Actions