NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 28841 | CVE-2015-8791 | The EbmlElement::ReadCodedSizeValue function in libEBML before 1.3.3 allows context-dependent attackers to obtain sensitive information from process heap memory via a crafted length value in an EBML id, which triggers an invalid memory access. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-02 | View | |
| 29609 | CVE-2014-0747 | The Certificate Authority Proxy Function (CAPF) CLI implementation in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier allows local users to inject commands via unspecified CAPF programs, aka Bug ID CSCum95493. | 2 | 6.8 | Medium | 2017-01-19 | 2015-07-31 | View | |
| 29865 | CVE-2014-10006 | Multiple cross-site request forgery (CSRF) vulnerabilities in Maian Uploader 4.0 allow remote attackers to hijack the authentication of unspecified users for requests that conduct cross-site scripting (XSS) attacks via the width parameter to (1) uploader/admin/js/load_flv.js.php or (2) uploader/js/load_flv.js.php. | 2 | 6.8 | Medium | 2017-01-19 | 2015-01-13 | View | |
| 30121 | CVE-2014-1492 | The cert_TestHostName function in lib/certdb/certdb.c in the certificate-checking implementation in Mozilla Network Security Services (NSS) before 3.16 accepts a wildcard character that is embedded in an internationalized domain name"s U-label, which might allow man-in-the-middle attackers to spoof SSL servers via a crafted certificate. | 2 | 4.3 | Medium | 2017-01-19 | 2017-01-06 | View | |
| 31657 | CVE-2014-3468 | The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data. | 2 | 6.8 | Medium | 2017-01-19 | 2017-01-06 | View |
Page 14610 of 17672, showing 5 records out of 88360 total, starting on record 73046, ending on 73050