NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
32381  CVE-2014-4388  IOKit in Apple iOS before 8 and Apple TV before 7 does not properly validate IODataQueue object metadata, which allows attackers to execute arbitrary code in a privileged context via an application that provides crafted values in unspecified metadata fields, a different vulnerability than CVE-2014-4418.    9.3  High  2017-01-19  2017-01-06  View
32637  CVE-2014-4698  Use-after-free vulnerability in ext/spl/spl_array.c in the SPL component in PHP through 5.5.14 allows context-dependent attackers to cause a denial of service or possibly have unspecified other impact via crafted ArrayIterator usage within applications in certain web-hosting environments.    4.6  Medium  2017-01-19  2017-01-06  View
33661  CVE-2014-6041  The Android WebView in Android before 4.4 allows remote attackers to bypass the Same Origin Policy via a crafted attribute containing a u0000 character, as demonstrated by an onclick="window.open("u0000javascript: sequence to the Android Browser application 4.2.1 or a third-party web browser.    5.8  Medium  2017-01-19  2017-01-06  View
31358  CVE-2014-3094  Stack-based buffer overflow in IBM DB2 9.7 through FP9a, 9.8 through FP5, 10.1 through FP4, and 10.5 before FP4 on Linux, UNIX, and Windows allows remote authenticated users to execute arbitrary code via a crafted ALTER MODULE statement.    8.5  High  2017-01-19  2017-01-06  View
32382  CVE-2014-4389  Integer overflow in IOKit in Apple iOS before 8 and Apple TV before 7 allows attackers to execute arbitrary code in a privileged context via an application that provides crafted API arguments.    9.3  High  2017-01-19  2017-01-06  View

Page 2594 of 17672, showing 5 records out of 88360 total, starting on record 12966, ending on 12970

Actions