NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 35493 | CVE-2014-8452 | Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow remote attackers to read arbitrary files via an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. | 2 | 5 | Medium | 2017-01-19 | 2014-12-11 | View | |
| 36261 | CVE-2014-9640 | oggenc/oggenc.c in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted raw file. | 2 | 5 | Medium | 2017-01-19 | 2015-04-17 | View | |
| 36517 | CVE-2013-0144 | Cross-site request forgery (CSRF) vulnerability in cgi-bin/create_user.cgi on QNAP VioStor NVR devices with firmware 4.0.3 allows remote attackers to hijack the authentication of administrators for requests that create administrative accounts via a NEW USER action. | 2 | 6.8 | Medium | 2017-01-18 | 2013-06-10 | View | |
| 36773 | CVE-2013-0430 | Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11 and 6 through Update 38, allows local users to affect confidentiality, integrity, and availability via unknown vectors related to the installation process of the client. | 2 | 6.9 | Medium | 2017-01-18 | 2013-11-02 | View | |
| 37029 | CVE-2013-0736 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Mingle Forum plugin 1.0.34 and possibly earlier for WordPress allow remote attackers to hijack the authentication of administrators for requests that (1) modify user privileges or (2) conduct cross-site scripting (XSS) attacks via unspecified vectors. | 2 | 6.8 | Medium | 2017-01-18 | 2013-10-10 | View |
Page 14480 of 17672, showing 5 records out of 88360 total, starting on record 72396, ending on 72400