NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
31736 | CVE-2014-3559 | The oVirt storage backend in Red Hat Enterprise Virtualization 3.4 does not wipe memory snapshots when deleting a VM, even when wipe-after-delete (WAD) is configured for the VM"s disk, which allows remote authenticated users with certain credentials to read portions of the deleted VM"s memory and obtain sensitive information via an uninitialized storage volume. | 2 | 3.5 | Low | 2017-01-19 | 2017-01-06 | View | |
31992 | CVE-2014-3905 | Cross-site scripting (XSS) vulnerability in tenfourzero Shutter 0.1.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-19 | 2014-09-08 | View | |
32248 | CVE-2014-4232 | Unspecified vulnerability in the Oracle Secure Global Desktop (SGD) component in Oracle Virtualization 4.63, 4.71, 5.0, and 5.1 allows remote attackers to affect integrity via unknown vectors related to Workspace Web Application, a different vulnerability than CVE-2014-2463. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-21 | View | |
32504 | CVE-2014-4526 | Multiple cross-site scripting (XSS) vulnerabilities in callback.php in the efence plugin 1.3.2 and earlier for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) message, (2) zoneid, (3) pubKey, or (4) privKey parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2014-07-11 | View | |
32760 | CVE-2014-4858 | Multiple SQL injection vulnerabilities in CWPLogin.aspx in Sabre AirCentre Crew products 2010.2.12.20008 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password field. | 2 | 7.5 | High | 2017-01-19 | 2015-10-05 | View |
Page 17173 of 17672, showing 5 records out of 88360 total, starting on record 85861, ending on 85865