CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
104024 | CVE-2017-7204 | Candidate | A Cross-Site Scripting (XSS) was discovered in imdbphp 5.1.1. The vulnerability exists due to insufficient filtration of user-supplied data (name) passed to the "imdbphp-master/demo/search.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website. | Assigned (20170321) | None (candidate not yet proposed) | View | |
104025 | CVE-2017-7205 | Candidate | A Cross-Site Scripting (XSS) was discovered in GamePanelX-V3 3.0.12. The vulnerability exists due to insufficient filtration of user-supplied data (a) passed to the "GamePanelX-V3-master/ajax/ajax.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website. | Assigned (20170321) | None (candidate not yet proposed) | View | |
104026 | CVE-2017-7206 | Candidate | The ff_h2645_extract_rbsp function in libavcodec in libav 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read) or obtain sensitive information from process memory via a crafted h264 video file. | Assigned (20170321) | None (candidate not yet proposed) | View | |
104027 | CVE-2017-7207 | Candidate | The mem_get_bits_rectangle function in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted PostScript document. | Assigned (20170321) | None (candidate not yet proposed) | View | |
104028 | CVE-2017-7208 | Candidate | The decode_residual function in libavcodec in libav 9.21 allows remote attackers to cause a denial of service (buffer over-read) or obtain sensitive information from process memory via a crafted h264 video file. | Assigned (20170321) | None (candidate not yet proposed) | View |
Page 740 of 20943, showing 5 records out of 104715 total, starting on record 3696, ending on 3700