NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
32024 | CVE-2014-3945 | The Authentication component in TYPO3 before 6.2, when salting for password hashing is disabled, does not require knowledge of the cleartext password if the password hash is known, which allows remote attackers to bypass authentication and gain access to the backend by leveraging knowledge of a password hash. | 2 | 4 | Medium | 2017-01-19 | 2014-06-04 | View | |
32280 | CVE-2014-4264 | Unspecified vulnerability in Oracle Java SE 7u60 and 8u5 allows remote attackers to affect availability via unknown vectors related to Security. | 2 | 5 | Medium | 2017-01-19 | 2017-01-06 | View | |
32536 | CVE-2014-4570 | Multiple cross-site scripting (XSS) vulnerabilities in the VideoWhisper Video Presentation plugin before 3.31 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) room_name parameter to c_login.php or (2) room parameter to index.php in vp/. | 2 | 4.3 | Medium | 2017-01-19 | 2015-08-28 | View | |
32792 | CVE-2014-4898 | The Harivijay (aka com.upasanhar.marathi.harivijay) application 4.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 5.4 | Medium | 2017-01-19 | 2014-11-14 | View | |
33048 | CVE-2014-5349 | Stack-based buffer overflow in Baidu Spark Browser 26.5.9999.3511 allows remote attackers to cause a denial of service (application crash) via nested calls to the window.print JavaScript function. | 2 | 5 | Medium | 2017-01-19 | 2014-08-20 | View |
Page 883 of 17672, showing 5 records out of 88360 total, starting on record 4411, ending on 4415