NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
29922 | CVE-2014-1237 | Cross-site scripting (XSS) vulnerability in synetics i-doit pro before 1.2.4 allows remote attackers to inject arbitrary web script or HTML via the call parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2014-02-21 | View | |
30434 | CVE-2014-1896 | The (1) do_send and (2) do_recv functions in io.c in libvchan in Xen 4.2.x, 4.3.x, and 4.4-RC series allows local guests to cause a denial of service or possibly gain privileges via crafted xenstore ring indexes, which triggers a "read or write past the end of the ring." | 2 | 4.9 | Medium | 2017-01-19 | 2017-01-06 | View | |
30690 | CVE-2014-2232 | Absolute path traversal vulnerability in the MapAPI in Infoware MapSuite before 1.0.36 and 1.1.x before 1.1.49 allows remote attackers to read arbitrary files via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2014-12-01 | View | |
30946 | CVE-2014-2528 | kcleanup.cpp in KDirStat 2.7.3 does not properly quote strings when deleting a directory, which allows remote attackers to execute arbitrary commands via a " (single quote) character in the directory name, a different vulnerability than CVE-2014-2527. | 2 | 6.8 | Medium | 2017-01-19 | 2014-08-27 | View | |
31202 | CVE-2014-2872 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to obtain potentially sensitive information from a directory listing via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2014-04-16 | View |
Page 16632 of 17672, showing 5 records out of 88360 total, starting on record 83156, ending on 83160