NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 35132 | CVE-2014-7839 | DocumentProvider in RESTEasy 2.3.7 and 3.0.9 does not configure the (1) external-general-entities or (2) external-parameter-entities features, which allows remote attackers to conduct XML external entity (XXE) attacks via unspecified vectors. | 2 | 6.4 | Medium | 2017-01-19 | 2015-04-22 | View | |
| 35388 | CVE-2014-8270 | BMC Track-It! 11.3 allows remote attackers to gain privileges and execute arbitrary code by creating an account whose name matches that of a local system account, then performing a password reset. | 2 | 5 | Medium | 2017-01-19 | 2014-12-12 | View | |
| 35900 | CVE-2014-9130 | scanner.c in LibYAML 0.1.5 and 0.1.6, as used in the YAML-LibYAML (aka YAML-XS) module for Perl, allows context-dependent attackers to cause a denial of service (assertion failure and crash) via vectors involving line-wrapping. | 2 | 5 | Medium | 2017-01-19 | 2017-01-02 | View | |
| 36156 | CVE-2014-9453 | Multiple cross-site scripting (XSS) vulnerabilities in simple-visitor-stat.php in the Simple visitor stat plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) HTTP User-Agent or (2) HTTP Referer header. | 2 | 4.3 | Medium | 2017-01-19 | 2015-01-05 | View | |
| 36412 | CVE-2014-9889 | drivers/media/platform/msm/camera_v2/pproc/cpp/msm_cpp.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices does not validate CPP frame messages, which allows attackers to gain privileges via a crafted application, aka Android internal bug 28803645 and Qualcomm internal bug CR674712. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 2184 of 17672, showing 5 records out of 88360 total, starting on record 10916, ending on 10920