NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
30946 | CVE-2014-2528 | kcleanup.cpp in KDirStat 2.7.3 does not properly quote strings when deleting a directory, which allows remote attackers to execute arbitrary commands via a " (single quote) character in the directory name, a different vulnerability than CVE-2014-2527. | 2 | 6.8 | Medium | 2017-01-19 | 2014-08-27 | View | |
31202 | CVE-2014-2872 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to obtain potentially sensitive information from a directory listing via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2014-04-16 | View | |
31458 | CVE-2014-3246 | SQL injection vulnerability in Collabtive 1.2 allows remote authenticated users to execute arbitrary SQL commands via the folder parameter in a fileview_list action to manageajax.php. | 2 | 6.5 | Medium | 2017-01-19 | 2014-05-14 | View | |
31714 | CVE-2014-3534 | arch/s390/kernel/ptrace.c in the Linux kernel before 3.15.8 on the s390 platform does not properly restrict address-space control operations in PTRACE_POKEUSR_AREA requests, which allows local users to obtain read and write access to kernel memory locations, and consequently gain privileges, via a crafted application that makes a ptrace system call. | 2 | 7.2 | High | 2017-01-19 | 2017-01-06 | View | |
31970 | CVE-2014-3881 | Cross-site request forgery (CSRF) vulnerability in Intercom Web Kyukincho 3.x before 3.0.030 allows remote attackers to hijack the authentication of arbitrary users. | 2 | 6.8 | Medium | 2017-01-19 | 2014-06-30 | View |
Page 15891 of 17672, showing 5 records out of 88360 total, starting on record 79451, ending on 79455