NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 36037 | CVE-2014-9316 | The mjpeg_decode_app function in libavcodec/mjpegdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds heap access) and possibly have other unspecified impact via vectors related to LJIF tags in an MJPEG file. | 2 | 7.5 | High | 2017-01-19 | 2016-12-02 | View | |
| 36293 | CVE-2014-9674 | The Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.5.4 proceeds with adding to length values without validating the original values, which allows remote attackers to cause a denial of service (integer overflow and heap-based buffer overflow) or possibly have unspecified other impact via a crafted Mac font. | 2 | 7.5 | High | 2017-01-19 | 2017-01-02 | View | |
| 40133 | CVE-2013-4541 | The usb_device_post_load function in hw/usb/bus.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via a crafted savevm image, related to a negative setup_len or setup_index value. | 2 | 7.5 | High | 2017-01-18 | 2014-11-05 | View | |
| 41413 | CVE-2013-6341 | SQL injection vulnerability in Dokeos 2.2 RC2 and earlier allows remote attackers to execute arbitrary SQL commands via the language parameter to index.php. | 2 | 7.5 | High | 2017-01-18 | 2013-12-27 | View | |
| 41925 | CVE-2013-7134 | Juvia uses the same secret key for all installations, which allows remote attackers to have unspecified impact by leveraging the secret key in app/config/initializers/secret_token.rb, related to cookies. | 2 | 7.5 | High | 2017-01-18 | 2014-04-29 | View |
Page 15028 of 17672, showing 5 records out of 88360 total, starting on record 75136, ending on 75140