NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
17715 | CVE-2016-1301 | The RBAC implementation in Cisco ASA-CX Content-Aware Security software before 9.3.1.1(112) and Cisco Prime Security Manager (PRSM) software before 9.3.1.1(112) allows remote authenticated users to change arbitrary passwords via a crafted HTTP request, aka Bug ID CSCuo94842. | 2 | 8.5 | High | 2017-01-19 | 2016-12-05 | View | |
26419 | CVE-2015-5190 | The pcsd web UI in PCS 0.9.139 and earlier allows remote authenticated users to execute arbitrary commands via "escape characters" in a URL. | 2 | 8.5 | High | 2017-01-19 | 2015-09-04 | View | |
5428 | CVE-2008-5686 | IBM Tivoli Provisioning Manager (TPM) before 5.1.1.1 IF0006, when its LDAP service is shared with other applications, does not require that an LDAP user be listed in the TPM user records, which allows remote authenticated users to execute SOAP commands that access arbitrary TPM functionality, as demonstrated by running provisioning workflows. | 2 | 8.5 | High | 2017-01-03 | 2011-03-07 | View | |
31540 | CVE-2014-3338 | The CTIManager module in Cisco Unified Communications Manager (CM) 10.0(1), when single sign-on is enabled, does not properly validate Kerberos SSO tokens, which allows remote authenticated users to gain privileges and execute arbitrary commands via crafted token data, aka Bug ID CSCum95491. | 2 | 8.5 | High | 2017-01-19 | 2017-01-06 | View | |
39732 | CVE-2013-4049 | Unrestricted file upload vulnerability in IBM SPSS Analytical Decision Management 6.1 before IF1, 6.2 before IF1, and 7.0 before FP1 IF6 allows remote authenticated users to execute arbitrary code by uploading and accessing a JSP file. | 2 | 8.5 | High | 2017-01-18 | 2013-10-11 | View |
Page 1318 of 17672, showing 5 records out of 88360 total, starting on record 6586, ending on 6590