NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
88089  CVE-2017-7673  Apache OpenMeetings 1.0.0 uses not very strong cryptographic storage, captcha is not used in registration and forget password dialogs and auth forms missing brute force protection.          2017-07-18  2017-07-17  View
88345  CVE-2017-7506  spice versions though 0.13 are vulnerable to out-of-bounds memory access when processing specially crafted messages from authenticated attacker to the spice server resulting into crash and/or server memory leak.          2017-07-18  2017-07-18  View
87578  CVE-2017-1000039  Framadate version 1.0 is vulnerable to Formula Injection in the CSV Export resulting possible Information Disclosure and Code Execution          2017-07-18  2017-07-17  View
87834  CVE-2017-11337  There is an invalid free in the Action::TaskFactory::cleanup function of actions.cpp in Exiv2 0.26. A crafted input will lead to a remote denial of service attack.          2017-07-18  2017-07-17  View
88090  CVE-2017-7678  In Apache Spark before 2.2.0, it is possible for an attacker to take advantage of a user's trust in the server to trick them into visiting a link that points to a shared Spark cluster and submits data including MHTML to the Spark master, or history server. This data, which could contain a script, would then be reflected back to the user and could be evaluated and executed by MS Windows-based clients. It is not an attack on Spark itself, but on the user, who may then execute the script inadvertently when viewing elements of the Spark web UIs.          2017-07-18  2017-07-12  View

Page 17337 of 17672, showing 5 records out of 88360 total, starting on record 86681, ending on 86685

Actions