NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
30942  CVE-2014-2524  The _rl_tropen function in util.c in GNU readline before 6.3 patch 3 allows local users to create or overwrite arbitrary files via a symlink attack on a /var/tmp/rltrace.[PID] file.    3.3  Low  2017-01-19  2016-09-07  View
31198  CVE-2014-2868  PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to modify the flow of execution of ColdFusion code by using an HTTP GET request to set a ColdFusion variable.    7.5  High  2017-01-19  2014-04-16  View
31454  CVE-2014-3225  Absolute path traversal vulnerability in the web interface in Cobbler 2.4.x through 2.6.x allows remote authenticated users to read arbitrary files via the Kickstart field in a profile.    Medium  2017-01-19  2014-05-16  View
31710  CVE-2014-3529  The OPC SAX setup in Apache POI before 3.10.1 allows remote attackers to read arbitrary files via an OpenXML file containing an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.    4.3  Medium  2017-02-15  2017-02-10  View
31966  CVE-2014-3876  Multiple cross-site scripting (XSS) vulnerabilities in Frams" Fast File EXchange (F*EX, aka fex) before fex-20140530 allow remote attackers to inject arbitrary web script or HTML via the (1) akey parameter to rup or (2) disclaimer or (3) gm parameter to fuc.    4.3  Medium  2017-01-19  2014-06-18  View

Page 15051 of 17672, showing 5 records out of 88360 total, starting on record 75251, ending on 75255

Actions