NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 32381 | CVE-2014-4388 | IOKit in Apple iOS before 8 and Apple TV before 7 does not properly validate IODataQueue object metadata, which allows attackers to execute arbitrary code in a privileged context via an application that provides crafted values in unspecified metadata fields, a different vulnerability than CVE-2014-4418. | 2 | 9.3 | High | 2017-01-19 | 2017-01-06 | View | |
| 32637 | CVE-2014-4698 | Use-after-free vulnerability in ext/spl/spl_array.c in the SPL component in PHP through 5.5.14 allows context-dependent attackers to cause a denial of service or possibly have unspecified other impact via crafted ArrayIterator usage within applications in certain web-hosting environments. | 2 | 4.6 | Medium | 2017-01-19 | 2017-01-06 | View | |
| 33661 | CVE-2014-6041 | The Android WebView in Android before 4.4 allows remote attackers to bypass the Same Origin Policy via a crafted attribute containing a u0000 character, as demonstrated by an onclick="window.open("u0000javascript: sequence to the Android Browser application 4.2.1 or a third-party web browser. | 2 | 5.8 | Medium | 2017-01-19 | 2017-01-06 | View | |
| 31358 | CVE-2014-3094 | Stack-based buffer overflow in IBM DB2 9.7 through FP9a, 9.8 through FP5, 10.1 through FP4, and 10.5 before FP4 on Linux, UNIX, and Windows allows remote authenticated users to execute arbitrary code via a crafted ALTER MODULE statement. | 2 | 8.5 | High | 2017-01-19 | 2017-01-06 | View | |
| 32382 | CVE-2014-4389 | Integer overflow in IOKit in Apple iOS before 8 and Apple TV before 7 allows attackers to execute arbitrary code in a privileged context via an application that provides crafted API arguments. | 2 | 9.3 | High | 2017-01-19 | 2017-01-06 | View |
Page 2594 of 17672, showing 5 records out of 88360 total, starting on record 12966, ending on 12970