NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
31243 | CVE-2014-2946 | Cross-site request forgery (CSRF) vulnerability in api/sms/send-sms in the Web UI 11.010.06.01.858 on Huawei E303 modems with software 22.157.18.00.858 allows remote attackers to hijack the authentication of administrators for requests that perform API operations and send SMS messages via a request element in an XML document. | 2 | 6.8 | Medium | 2017-01-19 | 2014-06-18 | View | |
31499 | CVE-2014-3296 | The XML programmatic interface (XML PI) in Cisco WebEx Meeting Server 1.5(.1.131) and earlier allows remote authenticated users to obtain sensitive meeting information via a crafted URL, aka Bug ID CSCum03527. | 2 | 4 | Medium | 2017-01-19 | 2017-01-12 | View | |
31755 | CVE-2014-3578 | Directory traversal vulnerability in Pivotal Spring Framework 3.x before 3.2.9 and 4.0 before 4.0.5 allows remote attackers to read arbitrary files via a crafted URL. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View | |
32011 | CVE-2014-3932 | SQL injection vulnerability in the device registration component in wsf/webservice.php in CoSoSys Endpoint Protector 4 4.3.0.4 and 4.4.0.2 allows remote attackers to execute arbitrary SQL commands via unspecified parameters. | 2 | 7.5 | High | 2017-01-19 | 2014-06-03 | View | |
32267 | CVE-2014-4251 | Unspecified vulnerability in the Oracle HTTP Server component in Oracle Fusion Middleware 11.1.1.7.0 and 12.1.2.0 allows remote authenticated users to affect integrity via vectors related to plugin 1.1. | 2 | 3.5 | Low | 2017-01-19 | 2014-12-11 | View |
Page 1140 of 17672, showing 5 records out of 88360 total, starting on record 5696, ending on 5700