NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
35800  CVE-2014-8950  Unspecified vulnerability in Check Point Security Gateway R77 and R77.10, when the (1) URL Filtering or (2) Identity Awareness blade is used, allows remote attackers to cause a denial of service (crash) via vectors involving an HTTPS request.    7.1  High  2017-01-19  2017-01-06  View
36056  CVE-2014-9341  Multiple cross-site request forgery (CSRF) vulnerabilities in the yURL ReTwitt plugin 1.4 and earlier for WordPress allow remote attackers to hijack the authentication of administrators for requests that conduct cross-site scripting (XSS) attacks via the (1) yurl_login or (2) yurl_anchor parameter in the yurl page to wp-admin/options-general.php.    6.8  Medium  2017-01-19  2014-12-22  View
36312  CVE-2014-9713  The default slapd configuration in the Debian openldap package 2.4.23-3 through 2.4.39-1.1 allows remote authenticated users to modify the user"s permissions and other user attributes via unspecified vectors.    Medium  2017-01-19  2016-12-21  View
36568  CVE-2013-0212  store/swift.py in OpenStack Glance Essex (2012.1), Folsom (2012.2) before 2012.2.3, and Grizzly, when in Swift single tenant mode, logs the Swift endpoint"s user name and password in cleartext when the endpoint is misconfigured or unusable, allows remote authenticated users to obtain sensitive information by reading the error messages.    Medium  2017-01-18  2015-02-09  View
36824  CVE-2013-0483  The login component in SOAP Gateway in IBM IMS Enterprise Suite 1.1, 2.1, and 2.2 uses cleartext credentials, which allows remote attackers to obtain sensitive information by sniffing the network.    Medium  2017-01-18  2013-04-05  View

Page 15285 of 17672, showing 5 records out of 88360 total, starting on record 76421, ending on 76425

Actions