NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
28678 | CVE-2015-8558 | The ehci_process_itd function in hw/usb/hcd-ehci.c in QEMU allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via a circular isochronous transfer descriptor (iTD) list. | 2 | 4.9 | Medium | 2017-01-19 | 2016-05-25 | View | |
28934 | CVE-2015-8943 | drivers/video/msm/mdss/mdss_mdp_util.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices does not verify that a mapping exists before proceeding with an unmap operation, which allows attackers to gain privileges via a crafted application, aka Android internal bug 28815158 and Qualcomm internal bugs CR794217 and CR836226. | 2 | 6.8 | Medium | 2017-01-19 | 2016-11-28 | View | |
30214 | CVE-2014-1591 | Mozilla Firefox 33.0 and SeaMonkey before 2.31 include path strings in CSP violation reports, which allows remote attackers to obtain sensitive information via a web site that receives a report after a redirect. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View | |
30470 | CVE-2014-1956 | CRLF injection vulnerability in FortiGuard FortiWeb before 5.0.3 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2014-07-18 | View | |
30726 | CVE-2014-2276 | The FileUploadController servlet in EMC Connectrix Manager Converged Network Edition (CMCNE) before 12.1.5 does not properly restrict additions to the Connectrix Manager repository, which allows remote attackers to obtain sensitive information by importing a crafted firmware file. | 2 | 5 | Medium | 2017-01-19 | 2014-04-01 | View |
Page 242 of 17672, showing 5 records out of 88360 total, starting on record 1206, ending on 1210