NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
36279  CVE-2014-9660  The _bdf_parse_glyphs function in bdf/bdflib.c in FreeType before 2.5.4 does not properly handle a missing ENDCHAR record, which allows remote attackers to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact via a crafted BDF font.    7.5  High  2017-01-19  2017-01-02  View
37047  CVE-2013-0757  The Chrome Object Wrapper (COW) implementation in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.2, and SeaMonkey before 2.15 does not prevent modifications to the prototype of an object, which allows remote attackers to execute arbitrary JavaScript code with chrome privileges by referencing Object.prototype.__proto__ in a crafted HTML document.    9.3  High  2017-01-18  2013-11-02  View
37559  CVE-2013-1321  Microsoft Publisher 2003 SP3 does not properly check the data type of an unspecified return value, which allows remote attackers to execute arbitrary code via a crafted Publisher file, aka "Publisher Return Value Validation Vulnerability."    9.3  High  2017-01-18  2013-12-30  View
38327  CVE-2013-2240  lib/flowplayer.swf.php in Gallery 3 before 3.0.9 does not properly remove query fragments, which allows remote attackers to have an unspecified impact via a replay attack, a different vulnerability than CVE-2013-2138.    7.5  High  2017-01-18  2013-10-10  View
38583  CVE-2013-2577  Buffer overflow in XnView before 2.04 allows remote attackers to execute arbitrary code via a crafted PCT file.    9.3  High  2017-01-18  2013-08-13  View

Page 15333 of 17672, showing 5 records out of 88360 total, starting on record 76661, ending on 76665

Actions