CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104055  CVE-2017-7235  Candidate  An issue was discovered in cloudflare-scrape 1.6.6 through 1.7.1. A malicious website owner could craft a page that executes arbitrary Python code against any cfscrape user who scrapes that website. This is fixed in 1.8.0.  Assigned (20170323)  None (candidate not yet proposed)    View
104056  CVE-2017-7236  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170323)  None (candidate not yet proposed)    View
104057  CVE-2017-7237  Candidate  The Spiceworks TFTP Server, as distributed with Spiceworks Inventory 7.5, allows remote attackers to access the Spiceworks dataconfigurations directory by leveraging the unauthenticated nature of the TFTP service for all clients who can reach UDP port 69, as demonstrated by a WRQ (aka Write request) operation for a configuration file or an executable file.  Assigned (20170323)  None (candidate not yet proposed)    View
104058  CVE-2017-7238  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170323)  None (candidate not yet proposed)    View
104059  CVE-2017-7239  Candidate  Ninka before 1.3.2 might allow remote attackers to obtain sensitive information, manipulate license compliance scan results, or cause a denial of service (process hang) via a crafted filename.  Assigned (20170323)  None (candidate not yet proposed)    View

Page 731 of 20943, showing 5 records out of 104715 total, starting on record 3651, ending on 3655

Actions