NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
30170  CVE-2014-1545  Mozilla Netscape Portable Runtime (NSPR) before 4.10.6 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds write) via vectors involving the sprintf and console functions.    10  High  2017-01-19  2017-01-06  View
30426  CVE-2014-1886  The Edinburgh by Bus application for Android, when Adobe PhoneGap 2.9.0 or earlier is used, allows remote attackers to execute arbitrary JavaScript code, and consequently access external-storage resources, by leveraging control over one of a number of "obscure Eastern European dating sites."    6.8  Medium  2017-01-19  2014-03-07  View
30682  CVE-2014-2217  Absolute path traversal vulnerability in the RadAsyncUpload control in the RadControls in Telerik UI for ASP.NET AJAX before Q3 2012 SP2 allows remote attackers to write to arbitrary files, and consequently execute arbitrary code, via a full pathname in the UploadID metadata value.    7.5  High  2017-01-19  2014-12-29  View
30938  CVE-2014-2520  EMC Documentum Content Server before 6.7 SP2 P16 and 7.x before 7.1 P07, when Oracle Database is used, does not properly restrict DQL hints, which allows remote authenticated users to conduct DQL injection attacks and read sensitive database content via a crafted request.    6.3  Medium  2017-01-19  2017-01-06  View
31194  CVE-2014-2864  Multiple directory traversal vulnerabilities in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allow remote attackers to have an unspecified impact via a filename parameter containing directory traversal sequences.    10  High  2017-01-19  2014-04-16  View

Page 15403 of 17672, showing 5 records out of 88360 total, starting on record 77011, ending on 77015

Actions