NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
35826 | CVE-2014-8997 | Unrestricted file upload vulnerability in the Photo functionality in DigitalVidhya Digi Online Examination System 2.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in assets/uploads/images/. | 2 | 7.5 | High | 2017-01-19 | 2014-11-20 | View | |
36082 | CVE-2014-9371 | The NativeAppServlet in ManageEngine Desktop Central MSP before 90075 allows remote attackers to execute arbitrary code via a crafted JSON object. | 2 | 10 | High | 2017-01-19 | 2015-03-06 | View | |
36338 | CVE-2014-9747 | The t42_parse_encoding function in type42/t42parse.c in FreeType before 2.5.4 does not properly update the current position for immediates-only mode, which allows remote attackers to cause a denial of service (infinite loop) via a Type42 font. | 2 | 5 | Medium | 2017-01-19 | 2016-06-08 | View | |
36594 | CVE-2013-0238 | The try_parse_v4_netmask function in hostmask.c in IRCD-Hybrid before 8.0.6 does not properly validate masks, which allows remote attackers to cause a denial of service (crash) via a mask that causes a negative number to be parsed. | 2 | 5 | Medium | 2017-01-18 | 2014-02-06 | View | |
36850 | CVE-2013-0520 | IBM Sterling Secure Proxy 3.2.0 and 3.3.01 before 3.3.01.23 Interim Fix 1, 3.4.0 before 3.4.0.6 Interim Fix 1, and 3.4.1 before 3.4.1.7 allows remote authenticated users to obtain sensitive Java stack-trace information by providing invalid input data. | 2 | 4 | Medium | 2017-01-18 | 2013-05-10 | View |
Page 16416 of 17672, showing 5 records out of 88360 total, starting on record 82076, ending on 82080