NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 30420 | CVE-2014-1879 | Cross-site scripting (XSS) vulnerability in import.php in phpMyAdmin before 4.1.7 allows remote authenticated users to inject arbitrary web script or HTML via a crafted filename in an import action. | 2 | 3.5 | Low | 2017-01-19 | 2015-08-05 | View | |
| 30676 | CVE-2014-2208 | CRLF injection vulnerability in the LightProcess protocol implementation in hphp/util/light-process.cpp in Facebook HipHop Virtual Machine (HHVM) before 2.4.2 allows remote attackers to execute arbitrary commands by entering a (newline) character before the end of a string. | 2 | 7.5 | High | 2017-01-19 | 2014-12-30 | View | |
| 30932 | CVE-2014-2514 | EMC Documentum Content Server before 6.7 SP1 P28, 6.7 SP2 before P15, 7.0 before P15, and 7.1 before P06 does not properly check authorization and does not properly restrict object types, which allows remote authenticated users to run save RPC commands with super-user privileges, and consequently execute arbitrary code, via unspecified vectors. | 2 | 8.2 | High | 2017-01-19 | 2017-01-06 | View | |
| 31188 | CVE-2014-2858 | Directory traversal vulnerability in the Resources plugin 1.0.0 before 1.2.6 for Pivotal Grails 2.0.0 through 2.3.6 allows remote attackers to obtain sensitive information via unspecified vectors related to a "configured block." NOTE: this issue was SPLIT from CVE-2014-0053 per ADT2 due to different vulnerability types. | 2 | 5 | Medium | 2017-01-19 | 2014-04-22 | View | |
| 31444 | CVE-2014-3202 | Unity before 7.2.1 does not properly handle entry activation, which allows physically proximate attackers to bypass the lock screen by holding the ENTER key, which triggers the process to crash. | 2 | 4.4 | Medium | 2017-01-19 | 2014-05-07 | View |
Page 15037 of 17672, showing 5 records out of 88360 total, starting on record 75181, ending on 75185