NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
30502 | CVE-2014-1990 | Cross-site request forgery (CSRF) vulnerability in TopAccess (aka the web-based management utility) on TOSHIBA TEC e-Studio 232, 233, 282, and 283 devices allows remote attackers to hijack the authentication of administrators for requests that change passwords. | 2 | 6.8 | Medium | 2017-01-19 | 2014-04-21 | View | |
30758 | CVE-2014-2325 | Multiple cross-site scripting (XSS) vulnerabilities in Proxmox Mail Gateway before 3.1-5829 allow remote attackers to inject arbitrary web script or HTML via the (1) state parameter to objects/who/index.htm or (2) User email address to quarantine/spam/manage.htm. | 2 | 4.3 | Medium | 2017-01-19 | 2014-03-25 | View | |
31270 | CVE-2014-2980 | Tools/gdomap.c in gdomap in GNUstep Base 1.24.6 and earlier, when run in daemon mode, does not properly handle the file descriptor for the logger, which allows remote attackers to cause a denial of service (abort) via an invalid request. | 2 | 4.3 | Medium | 2017-01-19 | 2014-04-29 | View | |
31526 | CVE-2014-3323 | Directory traversal vulnerability in Cisco Unified Contact Center Enterprise allows remote authenticated users to read arbitrary web-root files via a crafted URL, aka Bug ID CSCun25262. | 2 | 4 | Medium | 2017-01-19 | 2015-12-03 | View | |
31782 | CVE-2014-3617 | The forum_print_latest_discussions function in mod/forum/lib.php in Moodle through 2.4.11, 2.5.x before 2.5.8, 2.6.x before 2.6.5, and 2.7.x before 2.7.2 allows remote authenticated users to bypass the individual answer-posting requirement without the mod/forum:viewqandawithoutposting capability, and discover an author"s username, by leveraging the student role and visiting a Q&A forum. | 2 | 4 | Medium | 2017-01-19 | 2014-09-15 | View |
Page 1400 of 17672, showing 5 records out of 88360 total, starting on record 6996, ending on 7000