NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
30679  CVE-2014-2211  SQL injection vulnerability in portal/addtoapplication.php in POSH (aka Posh portal or Portaneo) 3.0 before 3.3.0 allows remote attackers to execute arbitrary SQL commands via the rssurl parameter.    7.5  High  2017-01-19  2014-03-07  View
30935  CVE-2014-2517  Unspecified vulnerability in EMC RSA Archer GRC Platform 5.x before 5.5 SP1 allows remote authenticated users to gain privileges via unknown vectors.    6.5  Medium  2017-01-19  2017-01-06  View
31191  CVE-2014-2861  Incomplete blacklist vulnerability in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted string, as demonstrated by bypassing a protection mechanism that removes only the "alert" string.    4.3  Medium  2017-01-19  2014-04-16  View
31447  CVE-2014-3207  Cross-site scripting (XSS) vulnerability in wserver.ml in SKS Keyserver before 1.1.5 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to pks/lookup/undefined1.    4.3  Medium  2017-01-19  2014-05-09  View
31703  CVE-2014-3520  OpenStack Identity (Keystone) before 2013.2.4, 2014.x before 2014.1.2, and Juno before Juno-2 allows remote authenticated trustees to gain access to an unauthorized project for which the trustor has certain roles via the project ID in a V2 API trust token request.    Medium  2017-01-19  2014-10-28  View

Page 14511 of 17672, showing 5 records out of 88360 total, starting on record 72551, ending on 72555

Actions