NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
36072 | CVE-2014-9358 | Docker before 1.3.3 does not properly validate image IDs, which allows remote attackers to conduct path traversal attacks and spoof repositories via a crafted image in a (1) "docker load" operation or (2) "registry communications." | 2 | 6.4 | Medium | 2017-01-19 | 2014-12-30 | View | |
36328 | CVE-2014-9737 | Open redirect vulnerability in the Language Switcher Dropdown module 7.x-1.x before 7.x-1.4 for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in a block. | 2 | 5.8 | Medium | 2017-01-19 | 2015-07-08 | View | |
36584 | CVE-2013-0228 | The xen_iret function in arch/x86/xen/xen-asm_32.S in the Linux kernel before 3.7.9 on 32-bit Xen paravirt_ops platforms does not properly handle an invalid value in the DS segment register, which allows guest OS users to gain guest OS privileges via a crafted application. | 2 | 6.2 | Medium | 2017-01-18 | 2013-08-22 | View | |
36840 | CVE-2013-0505 | IBM Sterling Order Management 8.0 before HF127, 8.5 before HF89, 9.0 before HF69, 9.1.0 before FP41, and 9.2.0 before FP13 allows remote authenticated users to conduct XPath injection attacks, and read arbitrary XML files, via unspecified vectors. | 2 | 5.5 | Medium | 2017-01-18 | 2013-03-21 | View | |
37352 | CVE-2013-1100 | The HTTP server in Cisco IOS on Catalyst switches does not properly handle TCP socket events, which allows remote attackers to cause a denial of service (device crash) via crafted packets on TCP port (1) 80 or (2) 443, aka Bug ID CSCuc53853. | 2 | 5.4 | Medium | 2017-01-18 | 2013-02-14 | View |
Page 16843 of 17672, showing 5 records out of 88360 total, starting on record 84211, ending on 84215