NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
31753 | CVE-2014-3576 | The processControlCommand function in broker/TransportConnection.java in Apache ActiveMQ before 5.11.0 allows remote attackers to cause a denial of service (shutdown) via a shutdown command. | 2 | 5 | Medium | 2017-01-19 | 2016-12-06 | View | |
32009 | CVE-2014-3924 | Multiple cross-site scripting (XSS) vulnerabilities in Webmin before 1.690 and Usermin before 1.600 allow remote attackers to inject arbitrary web script or HTML via vectors related to popup windows. | 2 | 4.3 | Medium | 2017-01-19 | 2014-07-17 | View | |
32265 | CVE-2014-4249 | Unspecified vulnerability in the BI Publisher component in Oracle Fusion Middleware 11.1.1.7 allows remote attackers to affect confidentiality via unknown vectors related to Mobile Service. | 2 | 5 | Medium | 2017-01-19 | 2014-12-11 | View | |
32521 | CVE-2014-4549 | Multiple cross-site scripting (XSS) vulnerabilities in pages/3DComplete.php in the WooCommerce SagePay Direct Payment Gateway plugin before 0.1.6.7 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) MD or (2) PARes parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2015-08-28 | View | |
32777 | CVE-2014-4881 | The PartyTrack library for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 5.4 | Medium | 2017-01-19 | 2014-11-14 | View |
Page 574 of 17672, showing 5 records out of 88360 total, starting on record 2866, ending on 2870