NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
29000  CVE-2014-0057  The x_button method in the ServiceController (vmdb/app/controllers/service_controller.rb) in Red Hat CloudForms 3.0 Management Engine 5.2 allows remote attackers to execute arbitrary methods via unspecified vectors.    7.5  High  2017-01-19  2014-03-19  View
30280  CVE-2014-1703  Use-after-free vulnerability in the WebSocketDispatcherHost::SendOrDrop function in content/browser/renderer_host/websocket_dispatcher_host.cc in the Web Sockets implementation in Google Chrome before 33.0.1750.149 might allow remote attackers to bypass the sandbox protection mechanism by leveraging an incorrect deletion in a certain failure case.    7.5  High  2017-01-19  2017-01-06  View
32840  CVE-2014-5006  Directory traversal vulnerability in ZOHO ManageEngine Desktop Central (DC) before 9 build 90055 allows remote attackers to execute arbitrary code via a .. (dot dot) in the fileName parameter to mdm/mdmLogUploader.    7.5  High  2017-01-19  2014-10-24  View
35912  CVE-2014-9152  The _user_resource_create function in the Services module 7.x-3.x before 7.x-3.10 for Drupal uses a password of 1 when creating new user accounts, which makes it easier for remote attackers to guess the password via a brute force attack.    7.5  High  2017-01-19  2014-12-01  View
37192  CVE-2013-0924  The extension functionality in Google Chrome before 26.0.1410.43 does not verify that use of the permissions API is consistent with file permissions, which has unspecified impact and attack vectors.    7.5  High  2017-01-18  2016-11-16  View

Page 2752 of 17672, showing 5 records out of 88360 total, starting on record 13756, ending on 13760

Actions