NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
16185  CVE-2010-4950  SQL injection vulnerability in the Event (event) extension before 0.3.7 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.    7.5  High  2017-01-18  2012-05-14  View
85305  CVE-2016-4800  The path normalization mechanism in PathResource class in Eclipse Jetty 9.3.x before 9.3.9 on Windows allows remote attackers to bypass protected resource restrictions and other security constraints via a URL with certain escaped characters, related to backslashes.    7.5  High  2017-04-27  2017-04-25  View
26937  CVE-2015-5874  CoreText in Apple iOS before 9 and iTunes before 12.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file.    7.5  High  2017-01-19  2016-12-21  View
30521  CVE-2014-2013  Stack-based buffer overflow in the xps_parse_color function in xps/xps-common.c in MuPDF 1.3 and earlier allows remote attackers to execute arbitrary code via a large number of entries in the ContextColor value of the Fill attribute in a Path element.    7.5  High  2017-01-19  2015-07-29  View
36153  CVE-2014-9450  Multiple SQL injection vulnerabilities in chart_bar.php in the frontend in Zabbix before 1.8.22, 2.0.x before 2.0.14, and 2.2.x before 2.2.8 allow remote attackers to execute arbitrary SQL commands via the (1) itemid or (2) periods parameter.    7.5  High  2017-01-19  2015-01-05  View

Page 2585 of 17672, showing 5 records out of 88360 total, starting on record 12921, ending on 12925

Actions