NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
31215  CVE-2014-2893  The GetHTMLRunDir function in the scan-build utility in Clang 3.5 and earlier allows local users to obtain sensitive information or overwrite arbitrary files via a symlink attack on temporary directories with predictable names.    1.9  Low  2017-01-19  2016-08-26  View
31471  CVE-2014-3267  Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco Security Manager 4.6 and earlier allows remote attackers to hijack the authentication of arbitrary users for requests that make unspecified changes, aka Bug ID CSCuo46427.    6.8  Medium  2017-01-19  2016-09-07  View
31727  CVE-2014-3549  Cross-site scripting (XSS) vulnerability in the get_description function in lib/classes/event/user_login_failed.php in Moodle 2.7.x before 2.7.1 allows remote attackers to inject arbitrary web script or HTML via a crafted username that is improperly handled during the logging of an invalid login attempt.    4.3  Medium  2017-01-19  2015-08-31  View
31983  CVE-2014-3896  Multiple cross-site request forgery (CSRF) vulnerabilities in CGI programs in Seeds acmailer before 3.8.17 and 3.9.x before 3.9.10 Beta allow remote attackers to hijack the authentication of arbitrary users for requests that modify or delete data, as demonstrated by modifying data affecting authorization.    6.8  Medium  2017-01-19  2015-07-23  View
32239  CVE-2014-4223  Unspecified vulnerability in Oracle Java SE 7u60 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CVE-2014-2483.    9.3  High  2017-01-19  2017-01-06  View

Page 14981 of 17672, showing 5 records out of 88360 total, starting on record 74901, ending on 74905

Actions