NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
29717 | CVE-2014-0874 | Cross-site scripting (XSS) vulnerability in IBM Content Navigator 2.x before 2.0.2.2-ICN-FP002 allows remote authenticated users to inject arbitrary web script or HTML via an unspecified parameter. | 2 | 3.5 | Low | 2017-01-19 | 2015-09-02 | View | |
29973 | CVE-2014-1294 | WebKit, as used in Apple iOS before 7.1 and Apple TV before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1289, CVE-2014-1290, CVE-2014-1291, CVE-2014-1292, and CVE-2014-1293. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-07 | View | |
30229 | CVE-2014-1613 | Dotclear before 2.6.2 allows remote attackers to execute arbitrary PHP code via a serialized object in the dc_passwd cookie to a password-protected page, which is not properly handled by (1) inc/public/lib.urlhandlers.php or (2) plugins/pages/_public.php. | 2 | 7.5 | High | 2017-01-19 | 2014-05-16 | View | |
30485 | CVE-2014-1972 | Apache Tapestry before 5.3.6 relies on client-side object storage without checking whether a client has modified an object, which allows remote attackers to cause a denial of service (resource consumption) or execute arbitrary code via crafted serialized data. | 2 | 7.8 | High | 2017-01-19 | 2015-08-24 | View | |
30741 | CVE-2014-2299 | Buffer overflow in the mpeg_read function in wiretap/mpeg.c in the MPEG parser in Wireshark 1.8.x before 1.8.13 and 1.10.x before 1.10.6 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a large record in MPEG data. | 2 | 9.3 | High | 2017-01-19 | 2016-06-01 | View |
Page 1817 of 17672, showing 5 records out of 88360 total, starting on record 9081, ending on 9085