NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 30689 | CVE-2014-2231 | Cross-site scripting (XSS) vulnerability in the API in synetics i-doit pro before 1.2.5 allows remote attackers to inject arbitrary web script or HTML via a property title. | 2 | 4.3 | Medium | 2017-01-19 | 2014-02-28 | View | |
| 30945 | CVE-2014-2527 | kcleanup.cpp in KDirStat 2.7.0 does not properly quote strings when deleting a directory, which allows remote attackers to execute arbitrary commands via a " (double quote) character in the directory name, a different vulnerability than CVE-2014-2528. | 2 | 6.8 | Medium | 2017-01-19 | 2014-08-27 | View | |
| 31201 | CVE-2014-2871 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 relies on an HTTP session for entering credentials on login pages, which allows remote attackers to obtain sensitive information by sniffing the network. | 2 | 5 | Medium | 2017-01-19 | 2014-04-16 | View | |
| 31457 | CVE-2014-3243 | SOAPpy 0.12.5 does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted SOAP request containing a large number of nested entity references. | 2 | 5 | Medium | 2017-01-19 | 2014-05-13 | View | |
| 31713 | CVE-2014-3533 | dbus 1.3.0 before 1.6.22 and 1.8.x before 1.8.6 allows local users to cause a denial of service (disconnect) via a certain sequence of crafted messages that cause the dbus-daemon to forward a message containing an invalid file descriptor. | 2 | 2.1 | Low | 2017-01-19 | 2016-10-14 | View |
Page 15606 of 17672, showing 5 records out of 88360 total, starting on record 78026, ending on 78030