NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 30954 | CVE-2014-2538 | Cross-site scripting (XSS) vulnerability in lib/rack/ssl.rb in the rack-ssl gem before 1.4.0 for Ruby allows remote attackers to inject arbitrary web script or HTML via a URI, which might not be properly handled by third-party adapters such as JRuby-Rack. | 2 | 4.3 | Medium | 2017-01-19 | 2015-10-08 | View | |
| 31210 | CVE-2014-2888 | lib/sfpagent/bsig.rb in the sfpagent gem before 0.4.15 for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in the module name in a JSON request. | 2 | 7.5 | High | 2017-01-19 | 2014-05-10 | View | |
| 31466 | CVE-2014-3262 | The Locator/ID Separation Protocol (LISP) implementation in Cisco IOS 15.3(3)S and earlier and IOS XE does not properly validate parameters in ITR control messages, which allows remote attackers to cause a denial of service (CEF outage and packet drops) via malformed messages, aka Bug ID CSCun73782. | 2 | 4.3 | Medium | 2017-01-19 | 2016-09-07 | View | |
| 31722 | CVE-2014-3544 | Cross-site scripting (XSS) vulnerability in user/profile.php in Moodle through 2.3.11, 2.4.x before 2.4.11, 2.5.x before 2.5.7, 2.6.x before 2.6.4, and 2.7.x before 2.7.1 allows remote authenticated users to inject arbitrary web script or HTML via the Skype ID profile field. | 2 | 3.5 | Low | 2017-01-19 | 2015-08-31 | View | |
| 31978 | CVE-2014-3890 | silex SX-2000WG devices with firmware before 1.5.4 allow remote attackers to cause a denial of service (connectivity outage) via a crafted IP packet, a different vulnerability than CVE-2014-3889. | 2 | 5 | Medium | 2017-01-19 | 2014-07-11 | View |
Page 16377 of 17672, showing 5 records out of 88360 total, starting on record 81881, ending on 81885