CVE List

Id CVE No. Status Description Phase Votes Comments Actions
103778  CVE-2017-6958  Candidate  An XSS vulnerability in the MantisBT Source Integration Plugin (before 2.0.2) search result page allows an attacker to inject arbitrary HTML or JavaScript (if MantisBT"s CSP settings permit it) by crafting any valid parameter.  Assigned (20170317)  None (candidate not yet proposed)    View
103779  CVE-2017-6959  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170317)  None (candidate not yet proposed)    View
103780  CVE-2017-6960  Candidate  An issue was discovered in apng2gif 1.7. There is an integer overflow resulting in a heap-based buffer over-read, related to the load_apng function and the imagesize variable.  Assigned (20170317)  None (candidate not yet proposed)    View
103781  CVE-2017-6961  Candidate  An issue was discovered in apng2gif 1.7. There is improper sanitization of user input causing huge memory allocations, resulting in a crash. This is related to the read_chunk function using the pChunk->size value (within the PNG file) to determine the amount of memory to allocate.  Assigned (20170317)  None (candidate not yet proposed)    View
103782  CVE-2017-6962  Candidate  An issue was discovered in apng2gif 1.7. There is an integer overflow resulting in a heap-based buffer overflow. This is related to the read_chunk function making an unchecked addition of 12.  Assigned (20170317)  None (candidate not yet proposed)    View

Page 762 of 20943, showing 5 records out of 104715 total, starting on record 3806, ending on 3810

Actions