NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
88343  CVE-2017-5247  Biscom Secure File Transfer is vulnerable to cross-site scripting in the Package Name field. An authenticated user with permissions to upload or send files can populate this field with a filename that contains standard HTML scripting tags. The resulting script will evaluated by any other authenticated user who views the attacker-supplied file name.          2017-07-18  2017-07-18  View
88342  CVE-2017-5246  Biscom Secure File Transfer is vulnerable to AngularJS expression injection in the Display Name field. An authenticated user can populate this field with a valid AngularJS expression, wrapped in double curly-braces ({{ }}). This expression will be evaluated by any other authenticated user who views the attacker's display name.          2017-07-18  2017-07-18  View
72118  CVE-2004-1739  Bird Chat 1.61 allows remote attackers to cause a denial of service (crash) via invalid users.    Medium  2017-07-18  2017-07-10  View
40142  CVE-2013-4550  Bip before 0.8.9, when running as a daemon, writes SSL handshake errors to an unexpected file descriptor that was previously associated with stderr before stderr has been closed, which allows remote attackers to write to other sockets and have an unspecified impact via a failed SSL handshake, a different vulnerability than CVE-2011-5268. NOTE: some sources originally mapped this CVE to two different types of issues; this CVE has since been SPLIT, producing CVE-2011-5268.    5.1  Medium  2017-01-18  2014-01-03  View
14491  CVE-2010-3071  bip before 0.8.6 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an empty USER command.    Medium  2017-01-18  2012-01-27  View

Page 16130 of 17672, showing 5 records out of 88360 total, starting on record 80646, ending on 80650

Actions