NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
35036  CVE-2014-7731  The Radio de la Cato (aka com.radio.de.la.cato) application 2.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.    5.4  Medium  2017-01-19  2015-02-11  View
35292  CVE-2014-8070  Open redirect vulnerability in YOOtheme Pagekit CMS 0.8.7 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect parameter to index.php/user/logout.    6.8  Medium  2017-01-19  2014-10-21  View
35548  CVE-2014-8522  The MySQL database in McAfee Network Data Loss Prevention (NDLP) before 9.3 does not require a password, which makes it easier for remote attackers to obtain access.    7.5  High  2017-01-19  2014-10-30  View
35804  CVE-2014-8954  Multiple cross-site scripting (XSS) vulnerabilities in phpSound 1.0.5 allow remote attackers to inject arbitrary web script or HTML via the (1) Title or (2) Description fields in a playlist or the (3) filter parameter in an explore action to index.php.    4.3  Medium  2017-01-19  2015-08-06  View
36060  CVE-2014-9345  SQL injection vulnerability in Guruperl.net Advertise With Pleasure! Professional (aka AWP PRO) 6.6 and earlier allows remote attackers to execute arbitrary SQL commands via the group_id parameter in a list_zone action to cgi/client.cgi.    7.5  High  2017-01-19  2014-12-09  View

Page 15269 of 17672, showing 5 records out of 88360 total, starting on record 76341, ending on 76345

Actions