NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 84779 | CVE-2017-7237 | The Spiceworks TFTP Server, as distributed with Spiceworks Inventory 7.5, allows remote attackers to access the Spiceworks dataconfigurations directory by leveraging the unauthenticated nature of the TFTP service for all clients who can reach UDP port 69, as demonstrated by a WRQ (aka Write request) operation for a configuration file or an executable file. | 2 | 7.5 | High | 2017-04-27 | 2017-04-12 | View | |
| 20011 | CVE-2016-4326 | The Chef Manage (formerly opscode-manage) add-on before 1.12.0 for Chef allows remote attackers to execute arbitrary code via crafted serialized data in a cookie. | 2 | 7.5 | High | 2017-01-19 | 2016-06-10 | View | |
| 85803 | CVE-2017-1103 | IBM Team Concert (RTC) is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume all available memory resources. IBM X-Force ID: 120665. | 2 | 7.5 | High | 2017-05-27 | 2017-05-15 | View | |
| 23595 | CVE-2015-1233 | Google Chrome before 41.0.2272.118 does not properly handle the interaction of IPC, the Gamepad API, and Google V8, which allows remote attackers to execute arbitrary code via unspecified vectors. | 2 | 7.5 | High | 2017-01-19 | 2016-12-21 | View | |
| 27691 | CVE-2015-6915 | SQL injection vulnerability in Montala Limited ResourceSpace 7.3.7009 and earlier allows remote attackers to execute arbitrary SQL commands via the "user" cookie to plugins/feedback/pages/feedback.php. | 2 | 7.5 | High | 2017-01-19 | 2015-09-14 | View |
Page 2425 of 17672, showing 5 records out of 88360 total, starting on record 12121, ending on 12125