NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
31458  CVE-2014-3246  SQL injection vulnerability in Collabtive 1.2 allows remote authenticated users to execute arbitrary SQL commands via the folder parameter in a fileview_list action to manageajax.php.    6.5  Medium  2017-01-19  2014-05-14  View
31714  CVE-2014-3534  arch/s390/kernel/ptrace.c in the Linux kernel before 3.15.8 on the s390 platform does not properly restrict address-space control operations in PTRACE_POKEUSR_AREA requests, which allows local users to obtain read and write access to kernel memory locations, and consequently gain privileges, via a crafted application that makes a ptrace system call.    7.2  High  2017-01-19  2017-01-06  View
31970  CVE-2014-3881  Cross-site request forgery (CSRF) vulnerability in Intercom Web Kyukincho 3.x before 3.0.030 allows remote attackers to hijack the authentication of arbitrary users.    6.8  Medium  2017-01-19  2014-06-30  View
32226  CVE-2014-4210  Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.0.2.0 and 10.3.6.0 allows remote attackers to affect confidentiality via vectors related to WLS - Web Services.    Medium  2017-01-19  2015-12-01  View
32482  CVE-2014-4498  The CPU Software in Apple OS X before 10.10.2 allows physically proximate attackers to modify firmware during the EFI update process by inserting a Thunderbolt device with crafted code in an Option ROM, aka the "Thunderstrike" issue.    4.7  Medium  2017-01-19  2015-10-09  View

Page 15675 of 17672, showing 5 records out of 88360 total, starting on record 78371, ending on 78375

Actions