NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
29944 | CVE-2014-1263 | curl and libcurl 7.27.0 through 7.35.0, when using the SecureTransport/Darwinssl backend, as used in in Apple OS X 10.9.x before 10.9.2, does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate when accessing a URL that uses a numerical IP address, which allows man-in-the-middle attackers to spoof servers via an arbitrary valid certificate. | 2 | 4.3 | Medium | 2017-01-19 | 2014-05-05 | View | |
30200 | CVE-2014-1576 | Heap-based buffer overflow in the nsTransformedTextRun function in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to execute arbitrary code via Cascading Style Sheets (CSS) token sequences that trigger changes to capitalization style. | 2 | 7.5 | High | 2017-01-19 | 2016-12-23 | View | |
30456 | CVE-2014-1930 | Visibility Software Cyber Recruiter before 8.1.00 does not use the appropriate combination of HTTPS transport and response headers to prevent access to (1) AppSelfService.aspx and (2) AgencyPortal.aspx in the browser history, which allows remote attackers to obtain sensitive information by leveraging an unattended workstation. | 2 | 4.3 | Medium | 2017-01-19 | 2014-02-21 | View | |
30712 | CVE-2014-2255 | Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allow remote attackers to cause a denial of service (defect-mode transition) via crafted HTTP packets. | 2 | 7.8 | High | 2017-01-19 | 2014-03-25 | View | |
30968 | CVE-2014-2570 | Cross-site scripting (XSS) vulnerability in www/make_subset.php in PHP Font Lib before 0.3.1 allows remote attackers to inject arbitrary web script or HTML via the name parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2015-09-01 | View |
Page 17224 of 17672, showing 5 records out of 88360 total, starting on record 86116, ending on 86120