NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 30662 | CVE-2014-2190 | Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco Broadcast Access Center for Telco and Wireless (aka BAC-TW) allows remote attackers to hijack the authentication of arbitrary users for requests that make BAC-TW changes, aka Bug IDs CSCuo23804 and CSCuo26389. | 2 | 6.8 | Medium | 2017-01-19 | 2015-08-13 | View | |
| 30918 | CVE-2014-2496 | Unspecified vulnerability in the PeopleSoft Enterprise PT PeopleTools component in Oracle PeopleSoft Products 8.52 and 8.53 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Test Framework. | 2 | 5.5 | Medium | 2017-01-19 | 2017-01-06 | View | |
| 31686 | CVE-2014-3501 | Apache Cordova Android before 3.5.1 allows remote attackers to bypass the HTTP whitelist and connect to arbitrary servers by using JavaScript to open WebSocket connections through WebView. | 2 | 4.3 | Medium | 2017-01-19 | 2014-11-17 | View | |
| 31942 | CVE-2014-3844 | The TinyMCE Color Picker plugin before 1.2 for WordPress does not properly check permissions, which allows remote attackers to modify plugin settings via unspecified vectors. NOTE: some of these details are obtained from third party information. | 2 | 5 | Medium | 2017-01-19 | 2014-06-27 | View | |
| 32198 | CVE-2014-4164 | Cross-site scripting (XSS) vulnerability in AlgoSec FireFlow 6.3-b230 allows remote attackers to inject arbitrary web script or HTML via a user signature to SelfService/Prefs.html. | 2 | 4.3 | Medium | 2017-01-19 | 2015-12-04 | View |
Page 15632 of 17672, showing 5 records out of 88360 total, starting on record 78156, ending on 78160