CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104060  CVE-2017-7240  Candidate  An issue was discovered on Miele Professional PG 8528 PST10 devices. The corresponding embedded webserver "PST10 WebServer" typically listens to port 80 and is prone to a directory traversal attack; therefore, an unauthenticated attacker may be able to exploit this issue to access sensitive information to aide in subsequent attacks. A Proof of Concept is GET /../../../../../../../../../../../../etc/shadow HTTP/1.1.  Assigned (20170323)  None (candidate not yet proposed)    View
104059  CVE-2017-7239  Candidate  Ninka before 1.3.2 might allow remote attackers to obtain sensitive information, manipulate license compliance scan results, or cause a denial of service (process hang) via a crafted filename.  Assigned (20170323)  None (candidate not yet proposed)    View
104058  CVE-2017-7238  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170323)  None (candidate not yet proposed)    View
104057  CVE-2017-7237  Candidate  The Spiceworks TFTP Server, as distributed with Spiceworks Inventory 7.5, allows remote attackers to access the Spiceworks dataconfigurations directory by leveraging the unauthenticated nature of the TFTP service for all clients who can reach UDP port 69, as demonstrated by a WRQ (aka Write request) operation for a configuration file or an executable file.  Assigned (20170323)  None (candidate not yet proposed)    View
104056  CVE-2017-7236  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170323)  None (candidate not yet proposed)    View

Page 132 of 20943, showing 5 records out of 104715 total, starting on record 656, ending on 660

Actions