NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 86682 | CVE-2017-9436 | TeamPass before 2.1.27.4 is vulnerable to a SQL injection in users.queries.php. | 2 | 7.5 | High | 2017-06-17 | 2017-06-13 | View | |
| 24730 | CVE-2015-2728 | The IndexedDatabaseManager class in the IndexedDB implementation in Mozilla Firefox before 39.0 and Firefox ESR 31.x before 31.8 and 38.x before 38.1 misinterprets an unspecified IDBDatabase field as a pointer, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors, related to a "type confusion" issue. | 2 | 7.5 | High | 2017-01-19 | 2016-12-27 | View | |
| 31642 | CVE-2014-3446 | SQL injection vulnerability in wcm/system/pages/admin/getnode.aspx in BSS Continuity CMS 4.2.22640.0 allows remote attackers to execute arbitrary SQL commands via the nodeid parameter. | 2 | 7.5 | High | 2017-01-19 | 2015-10-13 | View | |
| 36250 | CVE-2014-9604 | libavcodec/utvideodec.c in FFmpeg before 2.5.2 does not check for a zero value of a slice height, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted Ut Video data, related to the (1) restore_median and (2) restore_median_il functions. | 2 | 7.5 | High | 2017-01-19 | 2016-12-02 | View | |
| 37018 | CVE-2013-0724 | PHP remote file inclusion vulnerability in includes/generate-pdf.php in the WP ecommerce Shop Styling plugin for WordPress before 1.8 allows remote attackers to execute arbitrary PHP code via a URL in the dompdf parameter. | 2 | 7.5 | High | 2017-01-18 | 2014-05-28 | View |
Page 14558 of 17672, showing 5 records out of 88360 total, starting on record 72786, ending on 72790