NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
29718  CVE-2014-0875  Active Cloud Engine (ACE) in IBM Storwize V7000 Unified 1.3.0.0 through 1.4.3.x allows remote attackers to bypass intended ACL restrictions in opportunistic circumstances by leveraging incorrect ACL synchronization over an unreliable NFS connection that requires retransmissions.    3.5  Low  2017-01-19  2017-01-06  View
29974  CVE-2014-1295  Secure Transport in Apple iOS before 7.1.1, Apple OS X 10.8.x and 10.9.x through 10.9.2, and Apple TV before 6.1.1 does not ensure that a server"s X.509 certificate is the same during renegotiation as it was before renegotiation, which allows man-in-the-middle attackers to obtain sensitive information or modify TLS session data via a "triple handshake attack."    6.8  Medium  2017-01-19  2014-04-23  View
30230  CVE-2014-1615  Multiple cross-site request forgery (CSRF) vulnerabilities in Carbon Black before 4.1.0 allow remote attackers to hijack the authentication of administrators for requests that add new administrative users and have other unspecified action, as demonstrated by a request to api/user.    6.8  Medium  2017-01-19  2014-04-23  View
30486  CVE-2014-1973  Directory traversal vulnerability in the NextApp File Explorer application before 2.1.0.3 for Android allows remote attackers to overwrite or create arbitrary files via a crafted filename.    Medium  2017-01-19  2015-08-05  View
30742  CVE-2014-2301  OrbiTeam BSCW before 5.0.8 allows remote attackers to obtain sensitive metadata via the inf operations (op=inf) to an object in pub/bscw.cgi/.    Medium  2017-01-19  2014-05-13  View

Page 1534 of 17672, showing 5 records out of 88360 total, starting on record 7666, ending on 7670

Actions