CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104235  CVE-2017-7415  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170404)  None (candidate not yet proposed)    View
104234  CVE-2017-7414  Candidate  In Horde_Crypt before 2.7.6, as used in Horde Groupware Webmail Edition 5.x through 5.2.17, OS Command Injection can occur if the user has PGP features enabled in the user"s preferences, and has enabled the "Should PGP signed messages be automatically verified when viewed?" preference. To exploit this vulnerability, an attacker can send a PGP signed email (that is maliciously crafted) to the Horde user, who then must either view or preview it.  Assigned (20170403)  None (candidate not yet proposed)    View
104233  CVE-2017-7413  Candidate  In Horde_Crypt before 2.7.6, as used in Horde Groupware Webmail Edition through 5.2.17, OS Command Injection can occur if the attacker is an authenticated Horde Webmail user, has PGP features enabled in their preferences, and attempts to encrypt an email addressed to a maliciously crafted email address.  Assigned (20170403)  None (candidate not yet proposed)    View
104232  CVE-2017-7412  Candidate  NixOS 17.03 before 17.03.887 has a world-writable Docker socket, which allows local users to gain privileges by executing docker commands.  Assigned (20170403)  None (candidate not yet proposed)    View
104231  CVE-2017-7411  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170403)  None (candidate not yet proposed)    View

Page 97 of 20943, showing 5 records out of 104715 total, starting on record 481, ending on 485

Actions