CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104103  CVE-2017-7283  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170327)  None (candidate not yet proposed)    View
104104  CVE-2017-7284  Candidate  An attacker that has hijacked a Unitrends Enterprise Backup (before 9.1.2) web server session can leverage api/includes/users.php to change the password of the logged in account without knowing the current password. This allows for an account takeover.  Assigned (20170327)  None (candidate not yet proposed)    View
104105  CVE-2017-7285  Candidate  A vulnerability in the network stack of MikroTik Version 6.38.5 released 2017-03-09 could allow an unauthenticated remote attacker to exhaust all available CPU via a flood of TCP RST packets, preventing the affected router from accepting new TCP connections.  Assigned (20170327)  None (candidate not yet proposed)    View
104106  CVE-2017-7286  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.  Assigned (20170327)  None (candidate not yet proposed)    View
104083  CVE-2017-7263  Candidate  The bm_readbody_bmp function in bitmap_io.c in Potrace 1.14 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other impact via a crafted BMP image. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-8698.  Assigned (20170326)  None (candidate not yet proposed)    View

Page 725 of 20943, showing 5 records out of 104715 total, starting on record 3621, ending on 3625

Actions