NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
36084  CVE-2014-9373  Directory traversal vulnerability in the CollectorConfInfoServlet servlet in ManageEngine NetFlow Analyzer allows remote attackers to execute arbitrary code via a .. (dot dot) in the filename.    10  High  2017-01-19  2014-12-17  View
36340  CVE-2014-9750  ntp_crypto.c in ntpd in NTP 4.x before 4.2.8p1, when Autokey Authentication is enabled, allows remote attackers to obtain sensitive information from process memory or cause a denial of service (daemon crash) via a packet containing an extension field with an invalid value for the length of its value field.    5.8  Medium  2017-01-19  2016-11-28  View
36596  CVE-2013-0240  Gnome Online Accounts (GOA) 3.4.x, 3.6.x before 3.6.3, and 3.7.x before 3.7.5, does not properly validate SSL certificates when creating accounts such as Windows Live and Facebook accounts, which allows man-in-the-middle attackers to obtain sensitive information such as credentials by sniffing the network.    4.3  Medium  2017-01-18  2013-04-02  View
36852  CVE-2013-0525  Multiple cross-site scripting (XSS) vulnerabilities in IBM iNotes 8.5.x allow local users to inject arbitrary web script or HTML via a shared mail file, aka SPR DKEN8PDNTX.    1.5  Low  2017-01-18  2013-03-27  View
37108  CVE-2013-0838  Google Chrome before 24.0.1312.52 on Linux uses weak permissions for shared memory segments, which has unspecified impact and attack vectors.    7.5  High  2017-01-18  2013-02-07  View

Page 16987 of 17672, showing 5 records out of 88360 total, starting on record 84931, ending on 84935

Actions