NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
31192  CVE-2014-2862  PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 does not check authorization in unspecified situations, which allows remote authenticated users to perform actions via unknown vectors.    6.5  Medium  2017-01-19  2014-04-16  View
31448  CVE-2014-3209  The ldns-keygen tool in ldns 1.6.x uses the current umask to set the privileges of the private key, which might allow local users to obtain the private key by reading the file.    2.1  Low  2017-01-19  2014-11-17  View
31704  CVE-2014-3521  The component in (1) /luci/homebase and (2) /luci/cluster menu in Red Hat Conga 0.12.2 allows remote authenticated users to bypass intended access restrictions via a crafted URL.    5.5  Medium  2017-01-19  2014-10-07  View
31960  CVE-2014-3866  Multiple cross-site request forgery (CSRF) vulnerabilities in user_settings.php in Usercake 2.0.2 and earlier allow remote attackers to hijack the authentication of administrators for requests that change the (1) administrative password via the passwordc parameter or (2) administrative e-mail address via the email parameter.    6.8  Medium  2017-01-19  2014-05-29  View
32216  CVE-2014-4200  vm-support 0.88 in VMware Tools, as distributed with VMware Workstation through 10.0.3 and other products, uses 0644 permissions for the vm-support archive, which allows local users to obtain sensitive information by extracting files from this archive.    4.7  Medium  2017-01-19  2015-12-14  View

Page 14641 of 17672, showing 5 records out of 88360 total, starting on record 73201, ending on 73205

Actions