NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
84779  CVE-2017-7237  The Spiceworks TFTP Server, as distributed with Spiceworks Inventory 7.5, allows remote attackers to access the Spiceworks dataconfigurations directory by leveraging the unauthenticated nature of the TFTP service for all clients who can reach UDP port 69, as demonstrated by a WRQ (aka Write request) operation for a configuration file or an executable file.    7.5  High  2017-04-27  2017-04-12  View
20011  CVE-2016-4326  The Chef Manage (formerly opscode-manage) add-on before 1.12.0 for Chef allows remote attackers to execute arbitrary code via crafted serialized data in a cookie.    7.5  High  2017-01-19  2016-06-10  View
20267  CVE-2016-4698  AppleMobileFileIntegrity in Apple iOS before 10 and OS X before 10.12 mishandles process entitlement and Team ID values in the task port inheritance policy, which allows attackers to execute arbitrary code in a privileged context via a crafted app.    9.3  High  2017-01-19  2016-11-28  View
85803  CVE-2017-1103  IBM Team Concert (RTC) is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume all available memory resources. IBM X-Force ID: 120665.    7.5  High  2017-05-27  2017-05-15  View
86059  CVE-2017-8309  Memory leak in the audio/audio.c in QEMU (aka Quick Emulator) allows remote attackers to cause a denial of service (memory consumption) by repeatedly starting and stopping audio capture.    7.8  High  2017-07-18  2017-06-30  View

Page 1499 of 17672, showing 5 records out of 88360 total, starting on record 7491, ending on 7495

Actions