NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
23583  CVE-2015-1221  Use-after-free vulnerability in Blink, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging incorrect ordering of operations in the Web SQL Database thread relative to Blink"s main thread, related to the shutdown function in web/WebKit.cpp.    7.5  High  2017-01-19  2016-12-21  View
26399  CVE-2015-5148  SQL injection vulnerability in LivelyCart 1.2.0 allows remote attackers to execute arbitrary SQL commands via the search_query parameter to product/search.    7.5  High  2017-01-19  2015-07-01  View
28959  CVE-2014-0002  The XSLT component in Apache Camel before 2.11.4 and 2.12.x before 2.12.3 allows remote attackers to read arbitrary files and possibly have other unspecified impact via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.    7.5  High  2017-01-19  2014-04-19  View
33823  CVE-2014-6289  The Ajax dispatcher for Extbase in the Yet Another Gallery (yag) extension before 3.0.1 and Tools for Extbase development (pt_extbase) extension before 1.5.1 allows remote attackers to bypass access restrictions and execute arbitrary controller actions via unspecified vectors.    7.5  High  2017-01-19  2014-10-06  View
35871  CVE-2014-9057  SQL injection vulnerability in the XML-RPC interface in Movable Type before 5.18, 5.2.x before 5.2.11, and 6.x before 6.0.6 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.    7.5  High  2017-01-19  2015-11-16  View

Page 2290 of 17672, showing 5 records out of 88360 total, starting on record 11446, ending on 11450

Actions