NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
29718 | CVE-2014-0875 | Active Cloud Engine (ACE) in IBM Storwize V7000 Unified 1.3.0.0 through 1.4.3.x allows remote attackers to bypass intended ACL restrictions in opportunistic circumstances by leveraging incorrect ACL synchronization over an unreliable NFS connection that requires retransmissions. | 2 | 3.5 | Low | 2017-01-19 | 2017-01-06 | View | |
29974 | CVE-2014-1295 | Secure Transport in Apple iOS before 7.1.1, Apple OS X 10.8.x and 10.9.x through 10.9.2, and Apple TV before 6.1.1 does not ensure that a server"s X.509 certificate is the same during renegotiation as it was before renegotiation, which allows man-in-the-middle attackers to obtain sensitive information or modify TLS session data via a "triple handshake attack." | 2 | 6.8 | Medium | 2017-01-19 | 2014-04-23 | View | |
30230 | CVE-2014-1615 | Multiple cross-site request forgery (CSRF) vulnerabilities in Carbon Black before 4.1.0 allow remote attackers to hijack the authentication of administrators for requests that add new administrative users and have other unspecified action, as demonstrated by a request to api/user. | 2 | 6.8 | Medium | 2017-01-19 | 2014-04-23 | View | |
30486 | CVE-2014-1973 | Directory traversal vulnerability in the NextApp File Explorer application before 2.1.0.3 for Android allows remote attackers to overwrite or create arbitrary files via a crafted filename. | 2 | 5 | Medium | 2017-01-19 | 2015-08-05 | View | |
30742 | CVE-2014-2301 | OrbiTeam BSCW before 5.0.8 allows remote attackers to obtain sensitive metadata via the inf operations (op=inf) to an object in pub/bscw.cgi/. | 2 | 5 | Medium | 2017-01-19 | 2014-05-13 | View |
Page 1534 of 17672, showing 5 records out of 88360 total, starting on record 7666, ending on 7670