NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
30144  CVE-2014-1517  The login form in Bugzilla 2.x, 3.x, 4.x before 4.4.3, and 4.5.x before 4.5.3 does not properly handle a correctly authenticated but unintended login attempt, which makes it easier for remote authenticated users to obtain sensitive information by arranging for a victim to login to the attacker"s account and then submit a vulnerability report, related to a "login CSRF" issue.    Medium  2017-01-19  2016-04-04  View
31936  CVE-2014-3837  The document application in ownCloud Server before 6.0.3 uses sequential values for the file_id, which allows remote authenticated users to enumerate shared files via unspecified vectors.    Medium  2017-01-19  2014-06-05  View
32704  CVE-2014-4792  IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0.0 through 7.0.0.2 CF28, 8.0.0 through 8.0.0.1 CF13, and 8.5.0 before CF02 allows remote authenticated users to cause a denial of service (disk consumption) by uploading large files.    Medium  2017-01-19  2017-01-06  View
48576  CVE-2009-1289  private/login.ssi in the Advanced Management Module (AMM) on the IBM BladeCenter, including the BladeCenter H with BPET36H 54, allows remote attackers to discover the access roles and scopes of arbitrary user accounts via a modified WEBINDEX parameter.    Medium  2017-01-07  2009-04-18  View
60096  CVE-2006-1387  TWiki 4.0, 4.0.1, and 20010901 through 20040904 allows remote authenticated users with edit rights to cause a denial of service (infinite recursion leading to CPU and memory consumption) via INCLUDE by URL statements that form a loop, such as a page that includes itself.    Medium  2016-12-20  2011-03-07  View

Page 14652 of 17672, showing 5 records out of 88360 total, starting on record 73256, ending on 73260

Actions