NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
31751 | CVE-2014-3574 | Apache POI before 3.10.1 and 3.11.x before 3.11-beta2 allows remote attackers to cause a denial of service (CPU consumption and crash) via a crafted OOXML file, aka an XML Entity Expansion (XEE) attack. | 2 | 4.3 | Medium | 2017-02-15 | 2017-02-10 | View | |
32007 | CVE-2014-3922 | Cross-site scripting (XSS) vulnerability in Trend Micro InterScan Messaging Security Virtual Appliance 8.5.1.1516 allows remote authenticated users to inject arbitrary web script or HTML via the addWhiteListDomainStr parameter to addWhiteListDomain.imss. | 2 | 4.3 | Medium | 2017-01-19 | 2016-09-06 | View | |
32263 | CVE-2014-4247 | Unspecified vulnerability in Oracle Java SE 8u5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to JavaFX. | 2 | 9.3 | High | 2017-01-19 | 2017-01-06 | View | |
32519 | CVE-2014-4546 | Cross-site scripting (XSS) vulnerability in book_ajax.php in the Rezgo plugin 1.4.2 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the response parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2014-07-09 | View | |
32775 | CVE-2014-4877 | Absolute path traversal vulnerability in GNU Wget before 1.16, when recursion is enabled, allows remote FTP servers to write to arbitrary files, and consequently execute arbitrary code, via a LIST response that references the same filename within two entries, one of which indicates that the filename is for a symlink. | 2 | 9.3 | High | 2017-01-30 | 2017-01-25 | View |
Page 518 of 17672, showing 5 records out of 88360 total, starting on record 2586, ending on 2590