NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 30165 | CVE-2014-1540 | Use-after-free vulnerability in the nsEventListenerManager::CompileEventHandlerInternal function in the Event Listener Manager in Mozilla Firefox before 30.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via crafted web content. | 2 | 9.3 | High | 2017-01-19 | 2017-01-06 | View | |
| 30421 | CVE-2014-1881 | Apache Cordova 3.3.0 and earlier and Adobe PhoneGap 2.9.0 and earlier allow remote attackers to bypass intended device-resource restrictions of an event-based bridge via a crafted library clone that leverages IFRAME script execution and waits a certain amount of time for an OnJsPrompt handler return value as an alternative to correct synchronization. | 2 | 7.5 | High | 2017-01-19 | 2014-03-03 | View | |
| 30677 | CVE-2014-2209 | Facebook HipHop Virtual Machine (HHVM) before 3.1.0 does not drop supplemental group memberships within hphp/util/capability.cpp and hphp/util/light-process.cpp, which allows remote attackers to bypass intended access restrictions by leveraging group permissions for a file or directory. | 2 | 5 | Medium | 2017-01-19 | 2014-12-30 | View | |
| 30933 | CVE-2014-2515 | EMC Documentum D2 3.1 before P24, 3.1SP1 before P02, 4.0 before P11, 4.1 before P16, and 4.2 before P05 does not properly restrict tickets provided by D2GetAdminTicketMethod and D2RefreshCacheMethod, which allows remote authenticated users to gain privileges via a request for a superuser ticket. | 2 | 8.5 | High | 2017-01-19 | 2017-01-06 | View | |
| 31189 | CVE-2014-2859 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to bypass intended access restrictions via a direct request. | 2 | 7.5 | High | 2017-01-19 | 2014-04-16 | View |
Page 14435 of 17672, showing 5 records out of 88360 total, starting on record 72171, ending on 72175