NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
32043  CVE-2014-3969  Xen 4.4.x, when running on an ARM system, does not properly check write permissions on virtual addresses, which allows local guest administrators to gain privileges via unspecified vectors.    7.4  High  2017-01-19  2016-10-19  View
34603  CVE-2014-7146  The XmlImportExport plugin in MantisBT 1.2.17 and earlier allows remote attackers to execute arbitrary PHP code via a crafted (1) description field or (2) issuelink attribute in an XML file, which is not properly handled when executing the preg_replace function with the e modifier.    7.5  High  2017-01-19  2017-01-02  View
35115  CVE-2014-7822  The implementation of certain splice_write file operations in the Linux kernel before 3.16 does not enforce a restriction on the maximum size of a single file, which allows local users to cause a denial of service (system crash) or possibly have unspecified other impact via a crafted splice system call, as demonstrated by use of a file descriptor associated with an ext4 filesystem.    7.2  High  2017-01-19  2017-01-02  View
35883  CVE-2014-9096  Multiple SQL injection vulnerabilities in recover.php in Pligg CMS 2.0.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id or (2) n parameter.    7.5  High  2017-01-19  2014-11-28  View
36907  CVE-2013-0604  Heap-based buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2013-0603.    10  High  2017-01-18  2013-11-02  View

Page 1503 of 17672, showing 5 records out of 88360 total, starting on record 7511, ending on 7515

Actions