NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 23583 | CVE-2015-1221 | Use-after-free vulnerability in Blink, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging incorrect ordering of operations in the Web SQL Database thread relative to Blink"s main thread, related to the shutdown function in web/WebKit.cpp. | 2 | 7.5 | High | 2017-01-19 | 2016-12-21 | View | |
| 26399 | CVE-2015-5148 | SQL injection vulnerability in LivelyCart 1.2.0 allows remote attackers to execute arbitrary SQL commands via the search_query parameter to product/search. | 2 | 7.5 | High | 2017-01-19 | 2015-07-01 | View | |
| 28959 | CVE-2014-0002 | The XSLT component in Apache Camel before 2.11.4 and 2.12.x before 2.12.3 allows remote attackers to read arbitrary files and possibly have other unspecified impact via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. | 2 | 7.5 | High | 2017-01-19 | 2014-04-19 | View | |
| 33823 | CVE-2014-6289 | The Ajax dispatcher for Extbase in the Yet Another Gallery (yag) extension before 3.0.1 and Tools for Extbase development (pt_extbase) extension before 1.5.1 allows remote attackers to bypass access restrictions and execute arbitrary controller actions via unspecified vectors. | 2 | 7.5 | High | 2017-01-19 | 2014-10-06 | View | |
| 35871 | CVE-2014-9057 | SQL injection vulnerability in the XML-RPC interface in Movable Type before 5.18, 5.2.x before 5.2.11, and 6.x before 6.0.6 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. | 2 | 7.5 | High | 2017-01-19 | 2015-11-16 | View |
Page 2290 of 17672, showing 5 records out of 88360 total, starting on record 11446, ending on 11450