NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
30238 | CVE-2014-1637 | Command School Student Management System 1.06.01 does not properly restrict access to sw/backup/backup_ray2.php, which allows remote attackers to download a database backup via a direct request. | 2 | 5 | Medium | 2017-01-19 | 2014-02-21 | View | |
31518 | CVE-2014-3315 | Cross-site scripting (XSS) vulnerability in viewfilecontents.do in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCup76308. | 2 | 4.3 | Medium | 2017-01-19 | 2015-12-03 | View | |
31774 | CVE-2014-3609 | HttpHdrRange.cc in Squid 3.x before 3.3.12 and 3.4.x before 3.4.6 allows remote attackers to cause a denial of service (crash) via a request with crafted "Range headers with unidentifiable byte-range values." | 2 | 5 | Medium | 2017-01-19 | 2017-01-06 | View | |
32030 | CVE-2014-3952 | FreeBSD 8.4 before p14, 9.1 before p17, 9.2 before p10, and 10.0 before p7 does not properly initialize the buffer between the header and data of a control message, which allows local users to obtain sensitive information from kernel memory via unspecified vectors. | 2 | 4.9 | Medium | 2017-01-19 | 2014-11-18 | View | |
32286 | CVE-2014-4270 | Unspecified vulnerability in the Hyperion Common Admin component in Oracle Hyperion 11.1.2.2 and 11.1.2.3 allows remote authenticated users to affect confidentiality via unknown vectors related to User Interface, a different vulnerability than CVE-2014-4269. | 2 | 4 | Medium | 2017-01-19 | 2017-01-06 | View |
Page 1104 of 17672, showing 5 records out of 88360 total, starting on record 5516, ending on 5520