NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
30264  CVE-2014-1683  The bashMail function in cms/data/skins/techjunkie/fragments/contacts/functions.php in SkyBlueCanvas CMS before 1.1 r248-04, when the pid parameter is 4, allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) name, (2) email, (3) subject, or (4) message parameter to index.php.    6.8  Medium  2017-01-19  2016-05-25  View
30520  CVE-2014-2009  The mPAY24 payment module before 1.6 for PrestaShop allows remote attackers to obtain credentials, the installation path, and other sensitive information via a direct request to api/curllog.log.    Medium  2017-01-19  2015-08-05  View
31032  CVE-2014-2642  HP System Management Homepage (SMH) before 7.4 allows remote attackers to conduct clickjacking attacks via unspecified vectors.    4.3  Medium  2017-01-19  2015-08-10  View
31544  CVE-2014-3342  The CLI in Cisco IOS XR allows remote authenticated users to obtain sensitive information via unspecified commands, aka Bug IDs CSCuq42336, CSCuq76853, CSCuq76873, and CSCuq45383.    Medium  2017-01-19  2017-01-06  View
32056  CVE-2014-3985  The getHTTPResponse function in miniwget.c in MiniUPnP 1.9 allows remote attackers to cause a denial of service (crash) via crafted headers that trigger an out-of-bounds read.    Medium  2017-01-19  2015-10-08  View

Page 2032 of 17672, showing 5 records out of 88360 total, starting on record 10156, ending on 10160

Actions