NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
31751  CVE-2014-3574  Apache POI before 3.10.1 and 3.11.x before 3.11-beta2 allows remote attackers to cause a denial of service (CPU consumption and crash) via a crafted OOXML file, aka an XML Entity Expansion (XEE) attack.    4.3  Medium  2017-02-15  2017-02-10  View
32007  CVE-2014-3922  Cross-site scripting (XSS) vulnerability in Trend Micro InterScan Messaging Security Virtual Appliance 8.5.1.1516 allows remote authenticated users to inject arbitrary web script or HTML via the addWhiteListDomainStr parameter to addWhiteListDomain.imss.    4.3  Medium  2017-01-19  2016-09-06  View
32263  CVE-2014-4247  Unspecified vulnerability in Oracle Java SE 8u5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to JavaFX.    9.3  High  2017-01-19  2017-01-06  View
32519  CVE-2014-4546  Cross-site scripting (XSS) vulnerability in book_ajax.php in the Rezgo plugin 1.4.2 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the response parameter.    4.3  Medium  2017-01-19  2014-07-09  View
32775  CVE-2014-4877  Absolute path traversal vulnerability in GNU Wget before 1.16, when recursion is enabled, allows remote FTP servers to write to arbitrary files, and consequently execute arbitrary code, via a LIST response that references the same filename within two entries, one of which indicates that the filename is for a symlink.    9.3  High  2017-01-30  2017-01-25  View

Page 518 of 17672, showing 5 records out of 88360 total, starting on record 2586, ending on 2590

Actions