NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 30686 | CVE-2014-2226 | Ubiquiti UniFi Controller before 3.2.1 logs the administrative password hash in syslog messages, which allows man-in-the-middle attackers to obtain sensitive information via unspecified vectors. | 2 | 2.6 | Low | 2017-01-19 | 2016-10-14 | View | |
| 30942 | CVE-2014-2524 | The _rl_tropen function in util.c in GNU readline before 6.3 patch 3 allows local users to create or overwrite arbitrary files via a symlink attack on a /var/tmp/rltrace.[PID] file. | 2 | 3.3 | Low | 2017-01-19 | 2016-09-07 | View | |
| 31198 | CVE-2014-2868 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to modify the flow of execution of ColdFusion code by using an HTTP GET request to set a ColdFusion variable. | 2 | 7.5 | High | 2017-01-19 | 2014-04-16 | View | |
| 31454 | CVE-2014-3225 | Absolute path traversal vulnerability in the web interface in Cobbler 2.4.x through 2.6.x allows remote authenticated users to read arbitrary files via the Kickstart field in a profile. | 2 | 4 | Medium | 2017-01-19 | 2014-05-16 | View | |
| 31710 | CVE-2014-3529 | The OPC SAX setup in Apache POI before 3.10.1 allows remote attackers to read arbitrary files via an OpenXML file containing an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. | 2 | 4.3 | Medium | 2017-02-15 | 2017-02-10 | View |
Page 15646 of 17672, showing 5 records out of 88360 total, starting on record 78226, ending on 78230