NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
14491 | CVE-2010-3071 | bip before 0.8.6 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an empty USER command. | 2 | 5 | Medium | 2017-01-18 | 2012-01-27 | View | |
40142 | CVE-2013-4550 | Bip before 0.8.9, when running as a daemon, writes SSL handshake errors to an unexpected file descriptor that was previously associated with stderr before stderr has been closed, which allows remote attackers to write to other sockets and have an unspecified impact via a failed SSL handshake, a different vulnerability than CVE-2011-5268. NOTE: some sources originally mapped this CVE to two different types of issues; this CVE has since been SPLIT, producing CVE-2011-5268. | 2 | 5.1 | Medium | 2017-01-18 | 2014-01-03 | View | |
72118 | CVE-2004-1739 | Bird Chat 1.61 allows remote attackers to cause a denial of service (crash) via invalid users. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
88342 | CVE-2017-5246 | Biscom Secure File Transfer is vulnerable to AngularJS expression injection in the Display Name field. An authenticated user can populate this field with a valid AngularJS expression, wrapped in double curly-braces ({{ }}). This expression will be evaluated by any other authenticated user who views the attacker's display name. | 2017-07-18 | 2017-07-18 | View | ||||
88343 | CVE-2017-5247 | Biscom Secure File Transfer is vulnerable to cross-site scripting in the Package Name field. An authenticated user with permissions to upload or send files can populate this field with a filename that contains standard HTML scripting tags. The resulting script will evaluated by any other authenticated user who views the attacker-supplied file name. | 2017-07-18 | 2017-07-18 | View |
Page 1543 of 17672, showing 5 records out of 88360 total, starting on record 7711, ending on 7715