NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 30421 | CVE-2014-1881 | Apache Cordova 3.3.0 and earlier and Adobe PhoneGap 2.9.0 and earlier allow remote attackers to bypass intended device-resource restrictions of an event-based bridge via a crafted library clone that leverages IFRAME script execution and waits a certain amount of time for an OnJsPrompt handler return value as an alternative to correct synchronization. | 2 | 7.5 | High | 2017-01-19 | 2014-03-03 | View | |
| 30677 | CVE-2014-2209 | Facebook HipHop Virtual Machine (HHVM) before 3.1.0 does not drop supplemental group memberships within hphp/util/capability.cpp and hphp/util/light-process.cpp, which allows remote attackers to bypass intended access restrictions by leveraging group permissions for a file or directory. | 2 | 5 | Medium | 2017-01-19 | 2014-12-30 | View | |
| 30933 | CVE-2014-2515 | EMC Documentum D2 3.1 before P24, 3.1SP1 before P02, 4.0 before P11, 4.1 before P16, and 4.2 before P05 does not properly restrict tickets provided by D2GetAdminTicketMethod and D2RefreshCacheMethod, which allows remote authenticated users to gain privileges via a request for a superuser ticket. | 2 | 8.5 | High | 2017-01-19 | 2017-01-06 | View | |
| 31189 | CVE-2014-2859 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to bypass intended access restrictions via a direct request. | 2 | 7.5 | High | 2017-01-19 | 2014-04-16 | View | |
| 31445 | CVE-2014-3203 | Unity before 7.2.1, as used in Ubuntu 14.04, does not properly restrict access to the Dash when the lock screen is active, which allows physically proximate attackers to bypass the lock screen and execute arbitrary commands, as demonstrated by pressing the SUPER key before the screen auto-locks. | 2 | 4.4 | Medium | 2017-01-19 | 2014-05-07 | View |
Page 14786 of 17672, showing 5 records out of 88360 total, starting on record 73926, ending on 73930