NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
28514 | CVE-2015-8320 | Apache Cordova-Android before 3.7.0 improperly generates random values for BridgeSecret data, which makes it easier for attackers to conduct bridge hijacking attacks by predicting a value. | 2 | 5 | Medium | 2017-01-19 | 2016-12-07 | View | |
26458 | CVE-2015-5256 | Apache Cordova-Android before 4.1.0, when an application relies on a remote server, improperly implements a JavaScript whitelist protection mechanism, which allows attackers to bypass intended access restrictions via a crafted URI. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-07 | View | |
11589 | CVE-2010-0009 | Apache CouchDB 0.8.0 through 0.10.1 allows remote attackers to obtain sensitive information by measuring the completion time of operations that verify (1) hashes or (2) passwords. | 2 | 4.3 | Medium | 2017-01-18 | 2010-06-07 | View | |
31049 | CVE-2014-2668 | Apache CouchDB 1.5.0 and earlier allows remote attackers to cause a denial of service (CPU and memory consumption) via the count parameter to /_uuids. | 2 | 5 | Medium | 2017-01-19 | 2014-04-19 | View | |
46750 | CVE-2012-5649 | Apache CouchDB before 1.0.4, 1.1.x before 1.1.2, and 1.2.x before 1.2.1 allows remote attackers to execute arbitrary code via a JSONP callback, related to Adobe Flash. | 2 | 6.8 | Medium | 2017-01-19 | 2014-05-29 | View |
Page 1268 of 17672, showing 5 records out of 88360 total, starting on record 6336, ending on 6340