NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
35824  CVE-2014-8995  SQL injection vulnerability in Maarch LetterBox 2.8 allows remote attackers to execute arbitrary SQL commands via the UserId cookie.    Medium  2017-01-19  2014-11-20  View
36080  CVE-2014-9368  Cross-site request forgery (CSRF) vulnerability in the twitterDash plugin 2.1 and earlier for WordPress allows remote attackers to hijack the authentication of administrators for requests that conduct cross-site scripting (XSS) attacks via the username_twitterDash parameter in the twitterDash.php page to wp-admin/options-general.php.    6.8  Medium  2017-01-19  2014-12-22  View
36336  CVE-2014-9745  The parse_encoding function in type1/t1load.c in FreeType before 2.5.3 allows remote attackers to cause a denial of service (infinite loop) via a "broken number-with-base" in a Postscript stream, as demonstrated by 8#garbage.    Medium  2017-01-19  2016-12-07  View
42224  CVE-2012-0081  Unspecified vulnerability in Oracle GlassFish Enterprise Server 3.1.1 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Administration.    3.7  Low  2017-01-19  2012-01-30  View
42480  CVE-2012-0364  Cisco SRP 520 series devices with firmware before 1.1.26 and SRP 520W-U and 540 series devices with firmware before 1.2.4 allow remote attackers to replace the configuration file via an upload request to an unspecified URL, aka Bug ID CSCtw55495.    7.8  High  2017-01-19  2012-03-06  View

Page 15004 of 17672, showing 5 records out of 88360 total, starting on record 75016, ending on 75020

Actions