NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
36084 | CVE-2014-9373 | Directory traversal vulnerability in the CollectorConfInfoServlet servlet in ManageEngine NetFlow Analyzer allows remote attackers to execute arbitrary code via a .. (dot dot) in the filename. | 2 | 10 | High | 2017-01-19 | 2014-12-17 | View | |
36340 | CVE-2014-9750 | ntp_crypto.c in ntpd in NTP 4.x before 4.2.8p1, when Autokey Authentication is enabled, allows remote attackers to obtain sensitive information from process memory or cause a denial of service (daemon crash) via a packet containing an extension field with an invalid value for the length of its value field. | 2 | 5.8 | Medium | 2017-01-19 | 2016-11-28 | View | |
36596 | CVE-2013-0240 | Gnome Online Accounts (GOA) 3.4.x, 3.6.x before 3.6.3, and 3.7.x before 3.7.5, does not properly validate SSL certificates when creating accounts such as Windows Live and Facebook accounts, which allows man-in-the-middle attackers to obtain sensitive information such as credentials by sniffing the network. | 2 | 4.3 | Medium | 2017-01-18 | 2013-04-02 | View | |
36852 | CVE-2013-0525 | Multiple cross-site scripting (XSS) vulnerabilities in IBM iNotes 8.5.x allow local users to inject arbitrary web script or HTML via a shared mail file, aka SPR DKEN8PDNTX. | 2 | 1.5 | Low | 2017-01-18 | 2013-03-27 | View | |
37108 | CVE-2013-0838 | Google Chrome before 24.0.1312.52 on Linux uses weak permissions for shared memory segments, which has unspecified impact and attack vectors. | 2 | 7.5 | High | 2017-01-18 | 2013-02-07 | View |
Page 16987 of 17672, showing 5 records out of 88360 total, starting on record 84931, ending on 84935