NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 30940 | CVE-2014-2522 | curl and libcurl 7.27.0 through 7.35.0, when runnning on Windows and using the SChannel/Winssl TLS backend, does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate when accessing a URL that uses a numerical IP address, which allows man-in-the-middle attackers to spoof servers via an arbitrary valid certificate. | 2 | 4 | Medium | 2017-01-19 | 2014-07-17 | View | |
| 31196 | CVE-2014-2866 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 relies on client JavaScript code for access restrictions, which allows remote attackers to perform unspecified operations by modifying this code. | 2 | 10 | High | 2017-01-19 | 2014-04-16 | View | |
| 31452 | CVE-2014-3216 | GOM Media Player 2.2.57.5189 and earlier allows remote attackers to cause a denial of service (crash) via a crafted .ogg file. | 2 | 4.3 | Medium | 2017-01-19 | 2014-06-24 | View | |
| 31708 | CVE-2014-3525 | Unspecified vulnerability in Apache Traffic Server 3.x through 3.2.5, 4.x before 4.2.1.1, and 5.x before 5.0.1 has unknown impact and attack vectors, possibly related to health checks. | 2 | 10 | High | 2017-01-19 | 2014-10-04 | View | |
| 31964 | CVE-2014-3872 | Multiple SQL injection vulnerabilities in the administration login page in D-Link DAP-1350 (Rev. A1) with firmware 1.14 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password. | 2 | 7.5 | High | 2017-01-19 | 2015-09-29 | View |
Page 15525 of 17672, showing 5 records out of 88360 total, starting on record 77621, ending on 77625