NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
30502  CVE-2014-1990  Cross-site request forgery (CSRF) vulnerability in TopAccess (aka the web-based management utility) on TOSHIBA TEC e-Studio 232, 233, 282, and 283 devices allows remote attackers to hijack the authentication of administrators for requests that change passwords.    6.8  Medium  2017-01-19  2014-04-21  View
30758  CVE-2014-2325  Multiple cross-site scripting (XSS) vulnerabilities in Proxmox Mail Gateway before 3.1-5829 allow remote attackers to inject arbitrary web script or HTML via the (1) state parameter to objects/who/index.htm or (2) User email address to quarantine/spam/manage.htm.    4.3  Medium  2017-01-19  2014-03-25  View
31270  CVE-2014-2980  Tools/gdomap.c in gdomap in GNUstep Base 1.24.6 and earlier, when run in daemon mode, does not properly handle the file descriptor for the logger, which allows remote attackers to cause a denial of service (abort) via an invalid request.    4.3  Medium  2017-01-19  2014-04-29  View
31526  CVE-2014-3323  Directory traversal vulnerability in Cisco Unified Contact Center Enterprise allows remote authenticated users to read arbitrary web-root files via a crafted URL, aka Bug ID CSCun25262.    Medium  2017-01-19  2015-12-03  View
31782  CVE-2014-3617  The forum_print_latest_discussions function in mod/forum/lib.php in Moodle through 2.4.11, 2.5.x before 2.5.8, 2.6.x before 2.6.5, and 2.7.x before 2.7.2 allows remote authenticated users to bypass the individual answer-posting requirement without the mod/forum:viewqandawithoutposting capability, and discover an author"s username, by leveraging the student role and visiting a Q&A forum.    Medium  2017-01-19  2014-09-15  View

Page 1400 of 17672, showing 5 records out of 88360 total, starting on record 6996, ending on 7000

Actions