NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 36279 | CVE-2014-9660 | The _bdf_parse_glyphs function in bdf/bdflib.c in FreeType before 2.5.4 does not properly handle a missing ENDCHAR record, which allows remote attackers to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact via a crafted BDF font. | 2 | 7.5 | High | 2017-01-19 | 2017-01-02 | View | |
| 38327 | CVE-2013-2240 | lib/flowplayer.swf.php in Gallery 3 before 3.0.9 does not properly remove query fragments, which allows remote attackers to have an unspecified impact via a replay attack, a different vulnerability than CVE-2013-2138. | 2 | 7.5 | High | 2017-01-18 | 2013-10-10 | View | |
| 43191 | CVE-2012-1184 | Stack-based buffer overflow in the ast_parse_digest function in main/utils.c in Asterisk 1.8.x before 1.8.10.1 and 10.x before 10.2.1 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a long string in an HTTP Digest Authentication header. | 2 | 7.5 | High | 2017-01-19 | 2013-07-17 | View | |
| 43447 | CVE-2012-1565 | Unspecified vulnerability in ez Publish 4.1.4, 4.2, 4.3, 4.4, 4.5, and 4.6 has unknown impact and attack vectors related to an insecure direct object reference. | 2 | 7.5 | High | 2017-01-19 | 2012-10-08 | View | |
| 43703 | CVE-2012-1836 | Heap-based buffer overflow in dns.cpp in InspIRCd 2.0.5 might allow remote attackers to execute arbitrary code via a crafted DNS query that uses compression. | 2 | 7.5 | High | 2017-01-19 | 2012-04-12 | View |
Page 14870 of 17672, showing 5 records out of 88360 total, starting on record 74346, ending on 74350