NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
35572 | CVE-2014-8547 | libavcodec/gifdec.c in FFmpeg before 2.4.2 does not properly compute image heights, which allows remote attackers to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via crafted GIF data. | 2 | 7.5 | High | 2017-01-19 | 2016-12-02 | View | |
35828 | CVE-2014-8999 | SQL injection vulnerability in htdocs/modules/system/admin.php in XOOPS before 2.5.7 Final allows remote authenticated users to execute arbitrary SQL commands via the selgroups parameter. | 2 | 6.5 | Medium | 2017-01-19 | 2014-11-24 | View | |
36084 | CVE-2014-9373 | Directory traversal vulnerability in the CollectorConfInfoServlet servlet in ManageEngine NetFlow Analyzer allows remote attackers to execute arbitrary code via a .. (dot dot) in the filename. | 2 | 10 | High | 2017-01-19 | 2014-12-17 | View | |
36340 | CVE-2014-9750 | ntp_crypto.c in ntpd in NTP 4.x before 4.2.8p1, when Autokey Authentication is enabled, allows remote attackers to obtain sensitive information from process memory or cause a denial of service (daemon crash) via a packet containing an extension field with an invalid value for the length of its value field. | 2 | 5.8 | Medium | 2017-01-19 | 2016-11-28 | View | |
36596 | CVE-2013-0240 | Gnome Online Accounts (GOA) 3.4.x, 3.6.x before 3.6.3, and 3.7.x before 3.7.5, does not properly validate SSL certificates when creating accounts such as Windows Live and Facebook accounts, which allows man-in-the-middle attackers to obtain sensitive information such as credentials by sniffing the network. | 2 | 4.3 | Medium | 2017-01-18 | 2013-04-02 | View |
Page 16903 of 17672, showing 5 records out of 88360 total, starting on record 84511, ending on 84515