NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 30229 | CVE-2014-1613 | Dotclear before 2.6.2 allows remote attackers to execute arbitrary PHP code via a serialized object in the dc_passwd cookie to a password-protected page, which is not properly handled by (1) inc/public/lib.urlhandlers.php or (2) plugins/pages/_public.php. | 2 | 7.5 | High | 2017-01-19 | 2014-05-16 | View | |
| 30485 | CVE-2014-1972 | Apache Tapestry before 5.3.6 relies on client-side object storage without checking whether a client has modified an object, which allows remote attackers to cause a denial of service (resource consumption) or execute arbitrary code via crafted serialized data. | 2 | 7.8 | High | 2017-01-19 | 2015-08-24 | View | |
| 30741 | CVE-2014-2299 | Buffer overflow in the mpeg_read function in wiretap/mpeg.c in the MPEG parser in Wireshark 1.8.x before 1.8.13 and 1.10.x before 1.10.6 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a large record in MPEG data. | 2 | 9.3 | High | 2017-01-19 | 2016-06-01 | View | |
| 30997 | CVE-2014-2607 | Unspecified vulnerability in HP Operations Manager i 9.1 through 9.13 and 9.2 through 9.24 allows remote authenticated users to execute arbitrary code by leveraging the OMi operator role. | 2 | 8.5 | High | 2017-01-19 | 2014-07-16 | View | |
| 31253 | CVE-2014-2962 | Absolute path traversal vulnerability in the webproc cgi module on the Belkin N150 F9K1009 v1 router with firmware before 1.00.08 allows remote attackers to read arbitrary files via a full pathname in the getpage parameter. | 2 | 7.8 | High | 2017-01-19 | 2016-12-23 | View |
Page 2790 of 17672, showing 5 records out of 88360 total, starting on record 13946, ending on 13950