NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
28841  CVE-2015-8791  The EbmlElement::ReadCodedSizeValue function in libEBML before 1.3.3 allows context-dependent attackers to obtain sensitive information from process heap memory via a crafted length value in an EBML id, which triggers an invalid memory access.    4.3  Medium  2017-01-19  2016-12-02  View
29609  CVE-2014-0747  The Certificate Authority Proxy Function (CAPF) CLI implementation in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier allows local users to inject commands via unspecified CAPF programs, aka Bug ID CSCum95493.    6.8  Medium  2017-01-19  2015-07-31  View
29865  CVE-2014-10006  Multiple cross-site request forgery (CSRF) vulnerabilities in Maian Uploader 4.0 allow remote attackers to hijack the authentication of unspecified users for requests that conduct cross-site scripting (XSS) attacks via the width parameter to (1) uploader/admin/js/load_flv.js.php or (2) uploader/js/load_flv.js.php.    6.8  Medium  2017-01-19  2015-01-13  View
30121  CVE-2014-1492  The cert_TestHostName function in lib/certdb/certdb.c in the certificate-checking implementation in Mozilla Network Security Services (NSS) before 3.16 accepts a wildcard character that is embedded in an internationalized domain name"s U-label, which might allow man-in-the-middle attackers to spoof SSL servers via a crafted certificate.    4.3  Medium  2017-01-19  2017-01-06  View
31657  CVE-2014-3468  The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.    6.8  Medium  2017-01-19  2017-01-06  View

Page 14610 of 17672, showing 5 records out of 88360 total, starting on record 73046, ending on 73050

Actions