NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 29886 | CVE-2014-10027 | Multiple cross-site request forgery (CSRF) vulnerabilities in D-Link DAP-1360 router with firmware 2.5.4 and earlier allow remote attackers to hijack the authentication of unspecified users for requests that (1) change the MAC filter restrict mode, (2) add a MAC address to the filter, or (3) remove a MAC address from the filter via a crafted request to index.cgi. | 2 | 6.8 | Medium | 2017-01-19 | 2015-01-13 | View | |
| 30654 | CVE-2014-2180 | The Document Management component in Cisco Unified Contact Center Express does not properly validate a parameter, which allows remote authenticated users to upload files to arbitrary pathnames via a crafted HTTP request, aka Bug ID CSCun74133. | 2 | 4 | Medium | 2017-01-19 | 2014-04-29 | View | |
| 31678 | CVE-2014-3491 | Cross-site scripting (XSS) vulnerability in Foreman before 1.4.5 and 1.5.x before 1.5.1 allows remote attackers to inject arbitrary web script or HTML via the Name field to the New Host groups page, related to create, update, and destroy notification boxes. | 2 | 4.3 | Medium | 2017-01-19 | 2014-07-02 | View | |
| 31934 | CVE-2014-3835 | ownCloud Server before 5.0.16 and 6.0.x before 6.0.3 does not check permissions to the files_external application, which allows remote authenticated users to add external storage via unspecified vectors. | 2 | 5.5 | Medium | 2017-01-19 | 2014-06-05 | View | |
| 32190 | CVE-2014-4155 | Cross-site request forgery (CSRF) vulnerability in the ZTE ZXV10 W300 router with firmware W300V1.0.0a_ZRD_LK allows remote attackers to hijack the authentication of administrators for requests that change the admin password via a request to Forms/tools_admin_1. | 2 | 6.8 | Medium | 2017-01-19 | 2014-07-18 | View |
Page 15353 of 17672, showing 5 records out of 88360 total, starting on record 76761, ending on 76765