NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
23371  CVE-2015-0973  Buffer overflow in the png_read_IDAT_data function in pngrutil.c in libpng before 1.5.21 and 1.6.x before 1.6.16 allows context-dependent attackers to execute arbitrary code via IDAT data with a large width, a different vulnerability than CVE-2014-9495.    7.5  High  2017-01-19  2016-10-20  View
30283  CVE-2014-1706  crosh in Google Chrome OS before 33.0.1750.152 allows attackers to inject commands via unspecified vectors.    7.5  High  2017-01-19  2014-03-25  View
32331  CVE-2014-4323  The mdp_lut_hw_update function in drivers/video/msm/mdp.c in the MDP display driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not validate certain start and length values within an ioctl call, which allows attackers to gain privileges via a crafted application.    7.5  High  2017-01-19  2014-12-12  View
32843  CVE-2014-5017  SQL injection vulnerability in CPDB in application/controllers/admin/participantsaction.php in LimeSurvey 2.05+ Build 140618 allows remote attackers to execute arbitrary SQL commands via the sidx parameter in a JSON request to admin/participants/sa/getParticipants_json, related to a search parameter.    7.5  High  2017-01-19  2014-07-22  View
34635  CVE-2014-7201  Multiple SQL injection vulnerabilities in the search function in pi1/class.tx_dmmjobcontrol_pi1.php in the JobControl (dmmjobcontrol) extension 2.14.0 and earlier for TYPO3 allow remote attackers to execute arbitrary SQL commands via the (1) education, (2) region, or (3) sector fields, as demonstrated by the tx_dmmjobcontrol_pi1[search][sector][] parameter to jobs/.    7.5  High  2017-01-19  2014-10-22  View

Page 2785 of 17672, showing 5 records out of 88360 total, starting on record 13921, ending on 13925

Actions