CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
103000 | CVE-2017-6180 | Candidate | Keekoon KK002 devices 1.8.12 HD have a Cross Site Request Forgery Vulnerability affecting goform/formChnUserPwd and goform/formUserMng (and the entire set of other pages). | Assigned (20170221) | None (candidate not yet proposed) | View | |
103001 | CVE-2017-6181 | Candidate | The parse_char_class function in regparse.c in the Onigmo (aka Oniguruma-mod) regular expression library, as used in Ruby 2.4.0, allows remote attackers to cause a denial of service (deep recursion and application crash) via a crafted regular expression. | Assigned (20170221) | None (candidate not yet proposed) | View | |
103002 | CVE-2017-6182 | Candidate | In Sophos Web Appliance (SWA) before 4.3.1.2, a section of the machine"s interface responsible for generating reports was vulnerable to remote command injection via functions, aka NSWA-1304. | Assigned (20170221) | None (candidate not yet proposed) | View | |
103003 | CVE-2017-6183 | Candidate | In Sophos Web Appliance (SWA) before 4.3.1.2, a section of the machine"s configuration utilities for adding (and detecting) Active Directory servers was vulnerable to remote command injection, aka NSWA-1314. | Assigned (20170221) | None (candidate not yet proposed) | View | |
103004 | CVE-2017-6184 | Candidate | In Sophos Web Appliance (SWA) before 4.3.1.2, a section of the machine"s interface responsible for generating reports was vulnerable to remote command injection via the token parameter, aka NSWA-1303. | Assigned (20170221) | None (candidate not yet proposed) | View |
Page 976 of 20943, showing 5 records out of 104715 total, starting on record 4876, ending on 4880