CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104024  CVE-2017-7204  Candidate  A Cross-Site Scripting (XSS) was discovered in imdbphp 5.1.1. The vulnerability exists due to insufficient filtration of user-supplied data (name) passed to the "imdbphp-master/demo/search.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.  Assigned (20170321)  None (candidate not yet proposed)    View
104025  CVE-2017-7205  Candidate  A Cross-Site Scripting (XSS) was discovered in GamePanelX-V3 3.0.12. The vulnerability exists due to insufficient filtration of user-supplied data (a) passed to the "GamePanelX-V3-master/ajax/ajax.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.  Assigned (20170321)  None (candidate not yet proposed)    View
104026  CVE-2017-7206  Candidate  The ff_h2645_extract_rbsp function in libavcodec in libav 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read) or obtain sensitive information from process memory via a crafted h264 video file.  Assigned (20170321)  None (candidate not yet proposed)    View
104027  CVE-2017-7207  Candidate  The mem_get_bits_rectangle function in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted PostScript document.  Assigned (20170321)  None (candidate not yet proposed)    View
104028  CVE-2017-7208  Candidate  The decode_residual function in libavcodec in libav 9.21 allows remote attackers to cause a denial of service (buffer over-read) or obtain sensitive information from process memory via a crafted h264 video file.  Assigned (20170321)  None (candidate not yet proposed)    View

Page 740 of 20943, showing 5 records out of 104715 total, starting on record 3696, ending on 3700

Actions