NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 31529 | CVE-2014-3326 | SQL injection vulnerability in the web framework in Cisco Security Manager 4.5 and 4.6 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, aka Bug ID CSCup26957. | 2 | 6.5 | Medium | 2017-01-19 | 2017-01-12 | View | |
| 31785 | CVE-2014-3620 | cURL and libcurl before 7.38.0 allow remote attackers to bypass the Same Origin Policy and set cookies for arbitrary sites by setting a cookie for a top-level domain. | 2 | 5 | Medium | 2017-01-19 | 2016-12-02 | View | |
| 32041 | CVE-2014-3967 | The HVMOP_inject_msi function in Xen 4.2.x, 4.3.x, and 4.4.x does not properly check the return value from the IRQ setup check, which allows local HVM guest administrators to cause a denial of service (NULL pointer dereference and crash) via unspecified vectors. | 2 | 5.5 | Medium | 2017-01-19 | 2016-12-21 | View | |
| 32297 | CVE-2014-4283 | Unspecified vulnerability in Oracle Sun Solaris 11 allows remote attackers to affect confidentiality via unknown vectors related to Automated Install Engine, a different vulnerability than CVE-2014-4277. | 2 | 4.3 | Medium | 2017-01-19 | 2015-11-06 | View | |
| 32553 | CVE-2014-4587 | Multiple cross-site scripting (XSS) vulnerabilities in the WP GuestMap plugin 1.8 and earlier for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) zl, (2) mt, or (3) dc parameter to guest-locator.php; the (4) zl, (5) mt, (6) activate, or (7) dc parameter to online-tracker.php; the (8) zl, (9) mt, or (10) dc parameter to stats-map.php; or the (11) zl, (12) mt, (13) activate, or (14) dc parameter to weather-map.php. | 2 | 4.3 | Medium | 2017-01-19 | 2015-08-28 | View |
Page 3176 of 17672, showing 5 records out of 88360 total, starting on record 15876, ending on 15880