NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
31981 | CVE-2014-3894 | Cross-site scripting (XSS) vulnerability in PHP Kobo Multifunctional MailForm Free 2014/1/28 and earlier allows remote attackers to inject arbitrary web script or HTML via an HTTP Referer header. | 2 | 4.3 | Medium | 2017-01-19 | 2014-08-04 | View | |
32237 | CVE-2014-4221 | Unspecified vulnerability in Oracle Java SE 7u60 and 8u5 allows remote attackers to affect confidentiality via unknown vectors related to Libraries. | 2 | 4.3 | Medium | 2017-01-19 | 2017-01-06 | View | |
32493 | CVE-2014-4511 | Gitlist before 0.5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name in the URI of a request for a (1) blame, (2) file, or (3) stats page, as demonstrated by requests to blame/master/, master/, and stats/master/. | 2 | 7.5 | High | 2017-01-19 | 2014-07-24 | View | |
32749 | CVE-2014-4847 | Cross-site scripting (XSS) vulnerability in the Random Banner plugin 1.1.2.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the buffercode_RBanner_url_banner1 parameter in an update action to wp-admin/options.php. | 2 | 4.3 | Medium | 2017-01-19 | 2015-09-02 | View | |
33005 | CVE-2014-5277 | Docker before 1.3.1 and docker-py before 0.5.3 fall back to HTTP when the HTTPS connection to the registry fails, which allows man-in-the-middle attackers to conduct downgrade attacks and obtain authentication and image data by leveraging a network position between the client and the registry to block HTTPS traffic. | 2 | 5 | Medium | 2017-01-19 | 2014-11-18 | View |
Page 16423 of 17672, showing 5 records out of 88360 total, starting on record 82111, ending on 82115