NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
32026 | CVE-2014-3947 | Unrestricted file upload vulnerability in the powermail extension before 1.6.11 and 2.x before 2.0.14 for TYPO3 allows remote attackers to execute arbitrary code by uploading a file with a crafted extension, then accessing it via unspecified vectors. | 2 | 7.5 | High | 2017-01-19 | 2014-10-10 | View | |
32282 | CVE-2014-4266 | Unspecified vulnerability in Oracle Java SE 7u60 and 8u5 allows remote attackers to affect integrity via unknown vectors related to Serviceability. | 2 | 5 | Medium | 2017-01-19 | 2017-01-06 | View | |
32538 | CVE-2014-4572 | Cross-site scripting (XSS) vulnerability in bvc.php in the Votecount for Balatarin plugin 0.1.1 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the (1) url or (2) bvcurl parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2014-07-10 | View | |
32794 | CVE-2014-4900 | The migme (aka com.projectgoth) application 4.03.002 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 5.4 | Medium | 2017-01-19 | 2014-11-14 | View | |
33050 | CVE-2014-5351 | The kadm5_randkey_principal_3 function in lib/kadm5/srv/svr_principal.c in kadmind in MIT Kerberos 5 (aka krb5) before 1.13 sends old keys in a response to a -randkey -keepold request, which allows remote authenticated users to forge tickets by leveraging administrative access. | 2 | 2.1 | Low | 2017-01-19 | 2015-03-11 | View |
Page 1807 of 17672, showing 5 records out of 88360 total, starting on record 9031, ending on 9035