NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
30662  CVE-2014-2190  Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco Broadcast Access Center for Telco and Wireless (aka BAC-TW) allows remote attackers to hijack the authentication of arbitrary users for requests that make BAC-TW changes, aka Bug IDs CSCuo23804 and CSCuo26389.    6.8  Medium  2017-01-19  2015-08-13  View
30918  CVE-2014-2496  Unspecified vulnerability in the PeopleSoft Enterprise PT PeopleTools component in Oracle PeopleSoft Products 8.52 and 8.53 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Test Framework.    5.5  Medium  2017-01-19  2017-01-06  View
31686  CVE-2014-3501  Apache Cordova Android before 3.5.1 allows remote attackers to bypass the HTTP whitelist and connect to arbitrary servers by using JavaScript to open WebSocket connections through WebView.    4.3  Medium  2017-01-19  2014-11-17  View
31942  CVE-2014-3844  The TinyMCE Color Picker plugin before 1.2 for WordPress does not properly check permissions, which allows remote attackers to modify plugin settings via unspecified vectors. NOTE: some of these details are obtained from third party information.    Medium  2017-01-19  2014-06-27  View
32198  CVE-2014-4164  Cross-site scripting (XSS) vulnerability in AlgoSec FireFlow 6.3-b230 allows remote attackers to inject arbitrary web script or HTML via a user signature to SelfService/Prefs.html.    4.3  Medium  2017-01-19  2015-12-04  View

Page 15632 of 17672, showing 5 records out of 88360 total, starting on record 78156, ending on 78160

Actions