NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 30144 | CVE-2014-1517 | The login form in Bugzilla 2.x, 3.x, 4.x before 4.4.3, and 4.5.x before 4.5.3 does not properly handle a correctly authenticated but unintended login attempt, which makes it easier for remote authenticated users to obtain sensitive information by arranging for a victim to login to the attacker"s account and then submit a vulnerability report, related to a "login CSRF" issue. | 2 | 4 | Medium | 2017-01-19 | 2016-04-04 | View | |
| 31936 | CVE-2014-3837 | The document application in ownCloud Server before 6.0.3 uses sequential values for the file_id, which allows remote authenticated users to enumerate shared files via unspecified vectors. | 2 | 4 | Medium | 2017-01-19 | 2014-06-05 | View | |
| 32704 | CVE-2014-4792 | IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0.0 through 7.0.0.2 CF28, 8.0.0 through 8.0.0.1 CF13, and 8.5.0 before CF02 allows remote authenticated users to cause a denial of service (disk consumption) by uploading large files. | 2 | 4 | Medium | 2017-01-19 | 2017-01-06 | View | |
| 48576 | CVE-2009-1289 | private/login.ssi in the Advanced Management Module (AMM) on the IBM BladeCenter, including the BladeCenter H with BPET36H 54, allows remote attackers to discover the access roles and scopes of arbitrary user accounts via a modified WEBINDEX parameter. | 2 | 4 | Medium | 2017-01-07 | 2009-04-18 | View | |
| 60096 | CVE-2006-1387 | TWiki 4.0, 4.0.1, and 20010901 through 20040904 allows remote authenticated users with edit rights to cause a denial of service (infinite recursion leading to CPU and memory consumption) via INCLUDE by URL statements that form a loop, such as a page that includes itself. | 2 | 4 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 14652 of 17672, showing 5 records out of 88360 total, starting on record 73256, ending on 73260