NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
35581 | CVE-2014-8558 | JExperts Channel Platform 5.0.33_CCB allows remote authenticated users to bypass access restrictions via crafted action and key parameters. | 2 | 6.5 | Medium | 2017-01-19 | 2014-11-26 | View | |
35837 | CVE-2014-9016 | The password hashing API in Drupal 7.x before 7.34 and the Secure Password Hashes (aka phpass) module 6.x-2.x before 6.x-2.1 for Drupal allows remote attackers to cause a denial of service (CPU and memory consumption) via a crafted request. | 2 | 5 | Medium | 2017-01-19 | 2014-12-30 | View | |
36093 | CVE-2014-9385 | Cross-site request forgery (CSRF) vulnerability in Zenoss Core through 5 Beta 3 allows remote attackers to hijack the authentication of arbitrary users for requests that trigger arbitrary code execution via a ZenPack upload, aka ZEN-15388. | 2 | 6.8 | Medium | 2017-01-19 | 2016-03-21 | View | |
36349 | CVE-2014-9764 | imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a crafted GIF file. | 2 | 5 | Medium | 2017-01-19 | 2016-11-30 | View | |
36605 | CVE-2013-0250 | The init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote attackers to cause a denial of service (crash) via a crafted packet. | 2 | 5 | Medium | 2017-01-18 | 2014-06-09 | View |
Page 17164 of 17672, showing 5 records out of 88360 total, starting on record 85816, ending on 85820