NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
30200 | CVE-2014-1576 | Heap-based buffer overflow in the nsTransformedTextRun function in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to execute arbitrary code via Cascading Style Sheets (CSS) token sequences that trigger changes to capitalization style. | 2 | 7.5 | High | 2017-01-19 | 2016-12-23 | View | |
30456 | CVE-2014-1930 | Visibility Software Cyber Recruiter before 8.1.00 does not use the appropriate combination of HTTPS transport and response headers to prevent access to (1) AppSelfService.aspx and (2) AgencyPortal.aspx in the browser history, which allows remote attackers to obtain sensitive information by leveraging an unattended workstation. | 2 | 4.3 | Medium | 2017-01-19 | 2014-02-21 | View | |
30712 | CVE-2014-2255 | Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted HTTP packets. | 2 | 7.8 | High | 2017-01-19 | 2014-03-25 | View | |
30968 | CVE-2014-2570 | Cross-site scripting (XSS) vulnerability in www/make_subset.php in PHP Font Lib before 0.3.1 allows remote attackers to inject arbitrary web script or HTML via the name parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2015-09-01 | View | |
31224 | CVE-2014-2915 | Xen 4.4.x, when running on ARM systems, does not properly restrict access to hardware features, which allows local guest users to cause a denial of service (host or guest crash) via unspecified vectors, related to (1) cache control, (2) coprocessors, (3) debug registers, and (4) other unspecified registers. | 2 | 5.5 | Medium | 2017-01-19 | 2014-04-24 | View |
Page 16821 of 17672, showing 5 records out of 88360 total, starting on record 84101, ending on 84105