NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
36047  CVE-2014-9330  Integer overflow in tif_packbits.c in bmp2tif in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) via crafted BMP image, related to dimensions, which triggers an out-of-bounds read.    Medium  2017-01-19  2016-11-28  View
36303  CVE-2014-9689  content/renderer/device_sensors/device_orientation_event_pump.cc in Google Chrome before 41.0.2272.76 does not properly restrict access to high-rate gyroscope data, which makes it easier for remote attackers to obtain speech signals from a device"s physical environment via a crafted web site that listens for ondeviceorientation events, a different vulnerability than CVE-2015-1231.    Medium  2017-01-19  2015-03-09  View
36559  CVE-2013-0201  Multiple cross-site scripting (XSS) vulnerabilities in ownCloud 4.5.5, 4.0.10, and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) QUERY_STRING to core/lostpassword/templates/resetpassword.php, (2) mime parameter to apps/files/ajax/mimeicon.php, or (3) token parameter to apps/gallery/sharing.php.    4.3  Medium  2017-01-18  2016-09-21  View
36815  CVE-2013-0473  Multiple cross-site scripting (XSS) vulnerabilities in IBM Security AppScan Enterprise 5.6 and 8.x before 8.7 and IBM Rational Policy Tester 5.6 and 8.x before 8.5.0.4 allow remote attackers to inject arbitrary web script or HTML via a crafted report.    4.3  Medium  2017-01-18  2013-03-29  View
37071  CVE-2013-0781  Use-after-free vulnerability in the nsPrintEngine::CommonPrint function in Mozilla Firefox before 19.0, Thunderbird before 17.0.3, and SeaMonkey before 2.16 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.    10  High  2017-01-18  2013-11-02  View

Page 14383 of 17672, showing 5 records out of 88360 total, starting on record 71911, ending on 71915

Actions