CVE List

Id CVE No. Status Description Phase Votes Comments Actions
103000  CVE-2017-6180  Candidate  Keekoon KK002 devices 1.8.12 HD have a Cross Site Request Forgery Vulnerability affecting goform/formChnUserPwd and goform/formUserMng (and the entire set of other pages).  Assigned (20170221)  None (candidate not yet proposed)    View
103001  CVE-2017-6181  Candidate  The parse_char_class function in regparse.c in the Onigmo (aka Oniguruma-mod) regular expression library, as used in Ruby 2.4.0, allows remote attackers to cause a denial of service (deep recursion and application crash) via a crafted regular expression.  Assigned (20170221)  None (candidate not yet proposed)    View
103002  CVE-2017-6182  Candidate  In Sophos Web Appliance (SWA) before 4.3.1.2, a section of the machine"s interface responsible for generating reports was vulnerable to remote command injection via functions, aka NSWA-1304.  Assigned (20170221)  None (candidate not yet proposed)    View
103003  CVE-2017-6183  Candidate  In Sophos Web Appliance (SWA) before 4.3.1.2, a section of the machine"s configuration utilities for adding (and detecting) Active Directory servers was vulnerable to remote command injection, aka NSWA-1314.  Assigned (20170221)  None (candidate not yet proposed)    View
103004  CVE-2017-6184  Candidate  In Sophos Web Appliance (SWA) before 4.3.1.2, a section of the machine"s interface responsible for generating reports was vulnerable to remote command injection via the token parameter, aka NSWA-1303.  Assigned (20170221)  None (candidate not yet proposed)    View

Page 976 of 20943, showing 5 records out of 104715 total, starting on record 4876, ending on 4880

Actions