NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
31256 | CVE-2014-2965 | Cross-site scripting (XSS) vulnerability in auth-settings-x.php in SpamTitan before 6.04 allows remote attackers to inject arbitrary web script or HTML via the sortdir parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2014-07-17 | View | |
31512 | CVE-2014-3309 | The NTP implementation in Cisco IOS and IOS XE does not properly support use of the access-group command for a "deny all" configuration, which allows remote attackers to bypass intended restrictions on time synchronization via a standard query, aka Bug ID CSCuj66318. | 2 | 5 | Medium | 2017-01-19 | 2015-12-04 | View | |
31768 | CVE-2014-3598 | The Jpeg2KImagePlugin plugin in Pillow before 2.5.3 allows remote attackers to cause a denial of service via a crafted image. | 2 | 5 | Medium | 2017-01-19 | 2015-05-04 | View | |
32024 | CVE-2014-3945 | The Authentication component in TYPO3 before 6.2, when salting for password hashing is disabled, does not require knowledge of the cleartext password if the password hash is known, which allows remote attackers to bypass authentication and gain access to the backend by leveraging knowledge of a password hash. | 2 | 4 | Medium | 2017-01-19 | 2014-06-04 | View | |
32280 | CVE-2014-4264 | Unspecified vulnerability in Oracle Java SE 7u60 and 8u5 allows remote attackers to affect availability via unknown vectors related to Security. | 2 | 5 | Medium | 2017-01-19 | 2017-01-06 | View |
Page 1473 of 17672, showing 5 records out of 88360 total, starting on record 7361, ending on 7365