NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
35570 | CVE-2014-8545 | libavcodec/pngdec.c in FFmpeg before 2.4.2 accepts the monochrome-black format without verifying that the bits-per-pixel value is 1, which allows remote attackers to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via crafted PNG data. | 2 | 7.5 | High | 2017-01-19 | 2016-12-02 | View | |
35826 | CVE-2014-8997 | Unrestricted file upload vulnerability in the Photo functionality in DigitalVidhya Digi Online Examination System 2.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in assets/uploads/images/. | 2 | 7.5 | High | 2017-01-19 | 2014-11-20 | View | |
36082 | CVE-2014-9371 | The NativeAppServlet in ManageEngine Desktop Central MSP before 90075 allows remote attackers to execute arbitrary code via a crafted JSON object. | 2 | 10 | High | 2017-01-19 | 2015-03-06 | View | |
36338 | CVE-2014-9747 | The t42_parse_encoding function in type42/t42parse.c in FreeType before 2.5.4 does not properly update the current position for immediates-only mode, which allows remote attackers to cause a denial of service (infinite loop) via a Type42 font. | 2 | 5 | Medium | 2017-01-19 | 2016-06-08 | View | |
36594 | CVE-2013-0238 | The try_parse_v4_netmask function in hostmask.c in IRCD-Hybrid before 8.0.6 does not properly validate masks, which allows remote attackers to cause a denial of service (crash) via a mask that causes a negative number to be parsed. | 2 | 5 | Medium | 2017-01-18 | 2014-02-06 | View |
Page 16866 of 17672, showing 5 records out of 88360 total, starting on record 84326, ending on 84330