NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 24877 | CVE-2015-2918 | The Studio component in OrientDB Server Community Edition before 2.0.15 and 2.1.x before 2.1.1 does not properly restrict use of FRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site. | 2 | 4.3 | Medium | 2017-01-19 | 2015-12-31 | View | |
| 34808 | CVE-2014-7433 | The Student ID (aka com.computas.studentbevis) application 1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 5.4 | Medium | 2017-01-19 | 2014-11-14 | View | |
| 45649 | CVE-2012-4204 | The str_unescape function in the JavaScript engine in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors. | 2 | 10 | High | 2017-01-19 | 2013-11-02 | View | |
| 32003 | CVE-2014-3916 | The str_buf_cat function in string.c in Ruby 1.9.3, 2.0.0, and 2.1 allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string. | 2 | 5 | Medium | 2017-01-19 | 2014-11-18 | View | |
| 88226 | CVE-2017-9791 | The Struts 1 plugin in Apache Struts 2.3.x might allow remote code execution via a malicious field value passed in a raw message to the ActionMessage. | 2 | 7.5 | High | 2017-07-18 | 2017-07-16 | View |
Page 3001 of 17672, showing 5 records out of 88360 total, starting on record 15001, ending on 15005