NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 24108 | CVE-2015-1905 | The REST API in IBM Business Process Manager (BPM) 7.5.x through 7.5.1.2, 8.0.x through 8.0.1.3, 8.5.0 through 8.5.0.1, 8.5.5 through 8.5.5.0, and 8.5.6 through 8.5.6.0 allows remote authenticated users to bypass intended access restrictions on task-variable value changes via unspecified vectors. | 2 | 4 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 24620 | CVE-2015-2599 | Unspecified vulnerability in the RDBMS Scheduler component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality via unknown vectors. | 2 | 4 | Medium | 2017-01-19 | 2016-12-21 | View | |
| 26412 | CVE-2015-5167 | The Policy Admin Tool in Apache Ranger before 0.5.1 allows remote authenticated users to bypass intended access restrictions via the REST API. | 2 | 4 | Medium | 2017-01-19 | 2016-04-13 | View | |
| 36652 | CVE-2013-0305 | The administrative interface for Django 1.3.x before 1.3.6, 1.4.x before 1.4.4, and 1.5 before release candidate 2 does not check permissions for the history view, which allows remote authenticated administrators to obtain sensitive object history information. | 2 | 4 | Medium | 2017-01-18 | 2013-05-14 | View | |
| 42796 | CVE-2012-0712 | The XML feature in IBM DB2 9.5 before FP9, 9.7 through FP5, and 9.8 through FP4 allows remote authenticated users to cause a denial of service (infinite loop) by calling the XMLPARSE function with a crafted string expression. | 2 | 4 | Medium | 2017-01-19 | 2012-08-13 | View |
Page 14431 of 17672, showing 5 records out of 88360 total, starting on record 72151, ending on 72155