NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 29000 | CVE-2014-0057 | The x_button method in the ServiceController (vmdb/app/controllers/service_controller.rb) in Red Hat CloudForms 3.0 Management Engine 5.2 allows remote attackers to execute arbitrary methods via unspecified vectors. | 2 | 7.5 | High | 2017-01-19 | 2014-03-19 | View | |
| 30280 | CVE-2014-1703 | Use-after-free vulnerability in the WebSocketDispatcherHost::SendOrDrop function in content/browser/renderer_host/websocket_dispatcher_host.cc in the Web Sockets implementation in Google Chrome before 33.0.1750.149 might allow remote attackers to bypass the sandbox protection mechanism by leveraging an incorrect deletion in a certain failure case. | 2 | 7.5 | High | 2017-01-19 | 2017-01-06 | View | |
| 32840 | CVE-2014-5006 | Directory traversal vulnerability in ZOHO ManageEngine Desktop Central (DC) before 9 build 90055 allows remote attackers to execute arbitrary code via a .. (dot dot) in the fileName parameter to mdm/mdmLogUploader. | 2 | 7.5 | High | 2017-01-19 | 2014-10-24 | View | |
| 35912 | CVE-2014-9152 | The _user_resource_create function in the Services module 7.x-3.x before 7.x-3.10 for Drupal uses a password of 1 when creating new user accounts, which makes it easier for remote attackers to guess the password via a brute force attack. | 2 | 7.5 | High | 2017-01-19 | 2014-12-01 | View | |
| 37192 | CVE-2013-0924 | The extension functionality in Google Chrome before 26.0.1410.43 does not verify that use of the permissions API is consistent with file permissions, which has unspecified impact and attack vectors. | 2 | 7.5 | High | 2017-01-18 | 2016-11-16 | View |
Page 2752 of 17672, showing 5 records out of 88360 total, starting on record 13756, ending on 13760