NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 82908 | CVE-2016-6190 | SOGo before 2.3.12 and 3.x before 3.1.1 does not restrict access to the UID and DTSTAMP attributes, which allows remote authenticated users to obtain sensitive information about appointments with the "View the Date & Time" restriction, as demonstrated by correlating UIDs and DTSTAMPs between all users. | 2 | 4 | Medium | 2017-02-28 | 2017-02-22 | View | |
| 30940 | CVE-2014-2522 | curl and libcurl 7.27.0 through 7.35.0, when runnning on Windows and using the SChannel/Winssl TLS backend, does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate when accessing a URL that uses a numerical IP address, which allows man-in-the-middle attackers to spoof servers via an arbitrary valid certificate. | 2 | 4 | Medium | 2017-01-19 | 2014-07-17 | View | |
| 33756 | CVE-2014-6181 | IBM WebSphere Service Registry and Repository (WSRR) 7.0.x before 7.0.0.5 does not perform access-control checks for contained objects, which allows remote authenticated users to obtain sensitive information via unspecified vectors. | 2 | 4 | Medium | 2017-01-19 | 2014-12-24 | View | |
| 34012 | CVE-2014-6523 | Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 12.1.3, 12.2.2, 12.2.3, and 12.2.4 allows remote authenticated users to affect confidentiality via vectors related to REST Interface. | 2 | 4 | Medium | 2017-01-19 | 2015-11-04 | View | |
| 51932 | CVE-2009-4815 | Directory traversal vulnerability in Serv-U before 9.2.0.1 allows remote authenticated users to read arbitrary files via unspecified vectors. | 2 | 4 | Medium | 2017-01-07 | 2010-04-27 | View |
Page 14691 of 17672, showing 5 records out of 88360 total, starting on record 73451, ending on 73455