NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 30264 | CVE-2014-1683 | The bashMail function in cms/data/skins/techjunkie/fragments/contacts/functions.php in SkyBlueCanvas CMS before 1.1 r248-04, when the pid parameter is 4, allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) name, (2) email, (3) subject, or (4) message parameter to index.php. | 2 | 6.8 | Medium | 2017-01-19 | 2016-05-25 | View | |
| 30520 | CVE-2014-2009 | The mPAY24 payment module before 1.6 for PrestaShop allows remote attackers to obtain credentials, the installation path, and other sensitive information via a direct request to api/curllog.log. | 2 | 5 | Medium | 2017-01-19 | 2015-08-05 | View | |
| 31032 | CVE-2014-2642 | HP System Management Homepage (SMH) before 7.4 allows remote attackers to conduct clickjacking attacks via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-19 | 2015-08-10 | View | |
| 31544 | CVE-2014-3342 | The CLI in Cisco IOS XR allows remote authenticated users to obtain sensitive information via unspecified commands, aka Bug IDs CSCuq42336, CSCuq76853, CSCuq76873, and CSCuq45383. | 2 | 4 | Medium | 2017-01-19 | 2017-01-06 | View | |
| 32056 | CVE-2014-3985 | The getHTTPResponse function in miniwget.c in MiniUPnP 1.9 allows remote attackers to cause a denial of service (crash) via crafted headers that trigger an out-of-bounds read. | 2 | 5 | Medium | 2017-01-19 | 2015-10-08 | View |
Page 2032 of 17672, showing 5 records out of 88360 total, starting on record 10156, ending on 10160