NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
30229  CVE-2014-1613  Dotclear before 2.6.2 allows remote attackers to execute arbitrary PHP code via a serialized object in the dc_passwd cookie to a password-protected page, which is not properly handled by (1) inc/public/lib.urlhandlers.php or (2) plugins/pages/_public.php.    7.5  High  2017-01-19  2014-05-16  View
30485  CVE-2014-1972  Apache Tapestry before 5.3.6 relies on client-side object storage without checking whether a client has modified an object, which allows remote attackers to cause a denial of service (resource consumption) or execute arbitrary code via crafted serialized data.    7.8  High  2017-01-19  2015-08-24  View
30741  CVE-2014-2299  Buffer overflow in the mpeg_read function in wiretap/mpeg.c in the MPEG parser in Wireshark 1.8.x before 1.8.13 and 1.10.x before 1.10.6 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a large record in MPEG data.    9.3  High  2017-01-19  2016-06-01  View
30997  CVE-2014-2607  Unspecified vulnerability in HP Operations Manager i 9.1 through 9.13 and 9.2 through 9.24 allows remote authenticated users to execute arbitrary code by leveraging the OMi operator role.    8.5  High  2017-01-19  2014-07-16  View
31253  CVE-2014-2962  Absolute path traversal vulnerability in the webproc cgi module on the Belkin N150 F9K1009 v1 router with firmware before 1.00.08 allows remote attackers to read arbitrary files via a full pathname in the getpage parameter.    7.8  High  2017-01-19  2016-12-23  View

Page 2790 of 17672, showing 5 records out of 88360 total, starting on record 13946, ending on 13950

Actions