NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
31981  CVE-2014-3894  Cross-site scripting (XSS) vulnerability in PHP Kobo Multifunctional MailForm Free 2014/1/28 and earlier allows remote attackers to inject arbitrary web script or HTML via an HTTP Referer header.    4.3  Medium  2017-01-19  2014-08-04  View
32237  CVE-2014-4221  Unspecified vulnerability in Oracle Java SE 7u60 and 8u5 allows remote attackers to affect confidentiality via unknown vectors related to Libraries.    4.3  Medium  2017-01-19  2017-01-06  View
32493  CVE-2014-4511  Gitlist before 0.5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name in the URI of a request for a (1) blame, (2) file, or (3) stats page, as demonstrated by requests to blame/master/, master/, and stats/master/.    7.5  High  2017-01-19  2014-07-24  View
32749  CVE-2014-4847  Cross-site scripting (XSS) vulnerability in the Random Banner plugin 1.1.2.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the buffercode_RBanner_url_banner1 parameter in an update action to wp-admin/options.php.    4.3  Medium  2017-01-19  2015-09-02  View
33005  CVE-2014-5277  Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when the HTTPS connection to the registry fails, which allows man-in-the-middle attackers to conduct downgrade attacks and obtain authentication and image data by leveraging a network position between the client and the registry to block HTTPS traffic.    Medium  2017-01-19  2014-11-18  View

Page 16423 of 17672, showing 5 records out of 88360 total, starting on record 82111, ending on 82115

Actions