NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
30940  CVE-2014-2522  curl and libcurl 7.27.0 through 7.35.0, when runnning on Windows and using the SChannel/Winssl TLS backend, does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate when accessing a URL that uses a numerical IP address, which allows man-in-the-middle attackers to spoof servers via an arbitrary valid certificate.    Medium  2017-01-19  2014-07-17  View
31196  CVE-2014-2866  PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 relies on client JavaScript code for access restrictions, which allows remote attackers to perform unspecified operations by modifying this code.    10  High  2017-01-19  2014-04-16  View
31452  CVE-2014-3216  GOM Media Player 2.2.57.5189 and earlier allows remote attackers to cause a denial of service (crash) via a crafted .ogg file.    4.3  Medium  2017-01-19  2014-06-24  View
31708  CVE-2014-3525  Unspecified vulnerability in Apache Traffic Server 3.x through 3.2.5, 4.x before 4.2.1.1, and 5.x before 5.0.1 has unknown impact and attack vectors, possibly related to health checks.    10  High  2017-01-19  2014-10-04  View
31964  CVE-2014-3872  Multiple SQL injection vulnerabilities in the administration login page in D-Link DAP-1350 (Rev. A1) with firmware 1.14 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password.    7.5  High  2017-01-19  2015-09-29  View

Page 15525 of 17672, showing 5 records out of 88360 total, starting on record 77621, ending on 77625

Actions