NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
33885  CVE-2014-6363  vbscript.dll in Microsoft VBScript 5.6 through 5.8, as used with Internet Explorer 6 through 11 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "VBScript Memory Corruption Vulnerability."    9.3  High  2017-01-19  2016-12-09  View
34653  CVE-2014-7232  GE Healthcare Discovery XR656 and XR656 G2 has a password of (1) 2getin for the insite user, (2) 4$xray for the xruser user, and (3) #superxr for the root user, which has unspecified impact and attack vectors. NOTE: it is not clear whether these passwords are default, hardcoded, or dependent on another system or product that requires a fixed value.    10  High  2017-01-19  2015-08-04  View
35165  CVE-2014-7884  Multiple unspecified vulnerabilities in HP ArcSight Logger before 6.0P1 have unknown impact and remote authenticated attack vectors.    High  2017-01-19  2016-08-24  View
36957  CVE-2013-0655  The client in Schneider Electric Software Update (SESU) Utility 1.0.x and 1.1.x does not ensure that updates have a valid origin, which allows man-in-the-middle attackers to spoof updates, and consequently execute arbitrary code, by modifying the data stream on TCP port 80.    9.3  High  2017-01-18  2013-01-22  View
37213  CVE-2013-0945  EMC Avamar Client before 6.1.101-89 does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.    9.3  High  2017-01-18  2013-05-03  View

Page 2835 of 17672, showing 5 records out of 88360 total, starting on record 14171, ending on 14175

Actions