NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 39126 | CVE-2013-3300 | The JsonParser class in json/JsonParser.scala in Lift before 2.5 interprets a certain end-index value as a length value, which allows remote authenticated users to obtain sensitive information from other users" sessions via invalid input data containing a < (less than) character. | 2 | 4 | Medium | 2017-01-18 | 2013-07-29 | View | |
| 45782 | CVE-2012-4390 | (1) apps/calendar/appinfo/remote.php and (2) apps/contacts/appinfo/remote.php in ownCloud before 4.0.7 allows remote authenticated users to enumerate the registered users via unspecified vectors. | 2 | 4 | Medium | 2017-01-19 | 2012-09-13 | View | |
| 36311 | CVE-2014-9712 | Websense TRITON V-Series appliances before 7.8.3 Hotfix 03 and 7.8.4 before Hotfix 01 allow remote administrators to read arbitrary files and obtain passwords via a crafted path. | 2 | 4 | Medium | 2017-01-19 | 2016-06-23 | View | |
| 55767 | CVE-2007-3617 | The report module in vtiger CRM before 5.0.3 does not properly apply security rules, which allows remote authenticated users to read arbitrary private module entries. | 2 | 4 | Medium | 2017-01-07 | 2008-11-13 | View | |
| 26328 | CVE-2015-5051 | IBM Maximo Asset Management 7.5 before 7.5.0.8 IF6 and 7.6 before 7.6.0.2 IF1 and Maximo Asset Management 7.5 before 7.5.0.8 IF6, 7.5.1, and 7.6 before 7.6.0.2 IF1 for SmartCloud Control Desk allow remote authenticated users to bypass intended access restrictions on query results via unspecified vectors. | 2 | 4 | Medium | 2017-01-19 | 2016-01-06 | View |
Page 14684 of 17672, showing 5 records out of 88360 total, starting on record 73416, ending on 73420