NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
35311 | CVE-2014-8091 | X.Org X Window System (aka X11 and X) X11R5 and X.Org Server (aka xserver and xorg-server) before 1.16.3, when using SUN-DES-1 (Secure RPC) authentication credentials, does not check the return value of a malloc call, which allows remote attackers to cause a denial of service (NULL pointer dereference and server crash) via a crafted connection request. | 2 | 4.3 | Medium | 2017-01-19 | 2017-01-02 | View | |
36079 | CVE-2014-9367 | Incomplete blacklist vulnerability in the urlEncode function in lib/TWiki.pm in TWiki 6.0.0 and 6.0.1 allows remote attackers to conduct cross-site scripting (XSS) attacks via a """ (single quote) in the scope parameter to do/view/TWiki/WebSearch. | 2 | 4.3 | Medium | 2017-01-19 | 2015-01-02 | View | |
36591 | CVE-2013-0235 | The XMLRPC API in WordPress before 3.5.1 allows remote attackers to send HTTP requests to intranet servers, and conduct port-scanning attacks, by specifying a crafted source URL for a pingback, related to a Server-Side Request Forgery (SSRF) issue. | 2 | 6.4 | Medium | 2017-01-18 | 2013-07-08 | View | |
37103 | CVE-2013-0833 | Google Chrome before 24.0.1312.52 allows remote attackers to cause a denial of service (out-of-bounds read) via vectors related to printing. | 2 | 5 | Medium | 2017-01-18 | 2016-10-13 | View | |
37359 | CVE-2013-1109 | Cross-site request forgery (CSRF) vulnerability in testingLibraryAction.do in the Training Center testing library in Cisco WebEx Training Center allows remote attackers to hijack the authentication of arbitrary users for requests that delete tests, aka Bug ID CSCzu81067. | 2 | 6.8 | Medium | 2017-01-18 | 2013-02-02 | View |
Page 17078 of 17672, showing 5 records out of 88360 total, starting on record 85386, ending on 85390