NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 31198 | CVE-2014-2868 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to modify the flow of execution of ColdFusion code by using an HTTP GET request to set a ColdFusion variable. | 2 | 7.5 | High | 2017-01-19 | 2014-04-16 | View | |
| 31454 | CVE-2014-3225 | Absolute path traversal vulnerability in the web interface in Cobbler 2.4.x through 2.6.x allows remote authenticated users to read arbitrary files via the Kickstart field in a profile. | 2 | 4 | Medium | 2017-01-19 | 2014-05-16 | View | |
| 31710 | CVE-2014-3529 | The OPC SAX setup in Apache POI before 3.10.1 allows remote attackers to read arbitrary files via an OpenXML file containing an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. | 2 | 4.3 | Medium | 2017-02-15 | 2017-02-10 | View | |
| 31966 | CVE-2014-3876 | Multiple cross-site scripting (XSS) vulnerabilities in Frams" Fast File EXchange (F*EX, aka fex) before fex-20140530 allow remote attackers to inject arbitrary web script or HTML via the (1) akey parameter to rup or (2) disclaimer or (3) gm parameter to fuc. | 2 | 4.3 | Medium | 2017-01-19 | 2014-06-18 | View | |
| 32222 | CVE-2014-4206 | Unspecified vulnerability in the Hyperion Enterprise Performance Management Architect component in Oracle Hyperion 11.1.2.2 and 11.1.2.3 allows local users to affect integrity and availability via unknown vectors related to Data Synchronizer. | 2 | 3.3 | Low | 2017-01-19 | 2017-01-06 | View |
Page 15402 of 17672, showing 5 records out of 88360 total, starting on record 77006, ending on 77010