NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 28352 | CVE-2015-7992 | SAP HANA DB 1.00.73.00.389160 (NewDB100_REL) allows remote authenticated users to cause a denial of service (memory corruption and indexserver crash) via unspecified vectors to the EXECUTE_SEARCH_RULE_SET stored procedure, aka SAP Security Note 2175928. | 2 | 4 | Medium | 2017-01-19 | 2015-11-12 | View | |
| 29376 | CVE-2014-0482 | The contrib.auth.middleware.RemoteUserMiddleware middleware in Django before 1.4.14, 1.5.x before 1.5.9, 1.6.x before 1.6.6, and 1.7 before release candidate 3, when using the contrib.auth.backends.RemoteUserBackend backend, allows remote authenticated users to hijack web sessions via vectors related to the REMOTE_USER header. | 2 | 6 | Medium | 2017-01-19 | 2017-01-06 | View | |
| 29632 | CVE-2014-0771 | The OpenUrlToBuffer method in the BWOCXRUN.BwocxrunCtrl.1 ActiveX control in bwocxrun.ocx in Advantech WebAccess before 7.2 allows remote attackers to read arbitrary files via a file: URL. | 2 | 5 | Medium | 2017-01-19 | 2014-04-14 | View | |
| 30144 | CVE-2014-1517 | The login form in Bugzilla 2.x, 3.x, 4.x before 4.4.3, and 4.5.x before 4.5.3 does not properly handle a correctly authenticated but unintended login attempt, which makes it easier for remote authenticated users to obtain sensitive information by arranging for a victim to login to the attacker"s account and then submit a vulnerability report, related to a "login CSRF" issue. | 2 | 4 | Medium | 2017-01-19 | 2016-04-04 | View | |
| 30400 | CVE-2014-1836 | Absolute path traversal vulnerability in htdocs/libraries/image-editor/image-edit.php in ImpressCMS before 1.3.6 allows remote attackers to delete arbitrary files via a full pathname in the image_path parameter in a cancel action. | 2 | 6.4 | Medium | 2017-01-19 | 2015-07-02 | View |
Page 15424 of 17672, showing 5 records out of 88360 total, starting on record 77116, ending on 77120