NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
30493 | CVE-2014-1980 | Cross-site scripting (XSS) vulnerability in include/functions_metadata.inc.php in Piwigo before 2.4.6 allows remote attackers to inject arbitrary web script or HTML via the Make field in IPTC Exif metadata within an image uploaded to the Community plugin. | 2 | 4.3 | Medium | 2017-01-19 | 2014-08-14 | View | |
30749 | CVE-2014-2315 | Multiple cross-site scripting (XSS) vulnerabilities in the Thank You Counter Button plugin 1.8.7 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) thanks_caption, (2) thanks_caption_style, or (3) thanks_style parameter to wp-admin/options.php. | 2 | 4.3 | Medium | 2017-01-19 | 2015-08-11 | View | |
31005 | CVE-2014-2615 | Unspecified vulnerability in HP Universal CMDB 10.01 and 10.10 allows remote attackers to execute arbitrary code or obtain sensitive information via unknown vectors, aka ZDI-CAN-2083. | 2 | 7.5 | High | 2017-01-19 | 2017-01-06 | View | |
31517 | CVE-2014-3314 | Cisco AnyConnect on Android and OS X does not properly verify the host type, which allows remote attackers to spoof authentication forms and possibly capture credentials via unspecified vectors, aka Bug IDs CSCuo24931 and CSCuo24940. | 2 | 5 | Medium | 2017-01-19 | 2015-01-15 | View | |
31773 | CVE-2014-3608 | The VMWare driver in OpenStack Compute (Nova) before 2014.1.3 allows remote authenticated users to bypass the quota limit and cause a denial of service (resource consumption) by putting the VM into the rescue state, suspending it, which puts into an ERROR state, and then deleting the image. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-2573. | 2 | 2.7 | Low | 2017-01-19 | 2016-11-28 | View |
Page 1777 of 17672, showing 5 records out of 88360 total, starting on record 8881, ending on 8885