NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 33885 | CVE-2014-6363 | vbscript.dll in Microsoft VBScript 5.6 through 5.8, as used with Internet Explorer 6 through 11 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "VBScript Memory Corruption Vulnerability." | 2 | 9.3 | High | 2017-01-19 | 2016-12-09 | View | |
| 34653 | CVE-2014-7232 | GE Healthcare Discovery XR656 and XR656 G2 has a password of (1) 2getin for the insite user, (2) 4$xray for the xruser user, and (3) #superxr for the root user, which has unspecified impact and attack vectors. NOTE: it is not clear whether these passwords are default, hardcoded, or dependent on another system or product that requires a fixed value. | 2 | 10 | High | 2017-01-19 | 2015-08-04 | View | |
| 35165 | CVE-2014-7884 | Multiple unspecified vulnerabilities in HP ArcSight Logger before 6.0P1 have unknown impact and remote authenticated attack vectors. | 2 | 9 | High | 2017-01-19 | 2016-08-24 | View | |
| 36957 | CVE-2013-0655 | The client in Schneider Electric Software Update (SESU) Utility 1.0.x and 1.1.x does not ensure that updates have a valid origin, which allows man-in-the-middle attackers to spoof updates, and consequently execute arbitrary code, by modifying the data stream on TCP port 80. | 2 | 9.3 | High | 2017-01-18 | 2013-01-22 | View | |
| 37213 | CVE-2013-0945 | EMC Avamar Client before 6.1.101-89 does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate. | 2 | 9.3 | High | 2017-01-18 | 2013-05-03 | View |
Page 2835 of 17672, showing 5 records out of 88360 total, starting on record 14171, ending on 14175