NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
30936  CVE-2014-2518  Multiple cross-site request forgery (CSRF) vulnerabilities in EMC Documentum WDK before 6.7SP1 P28 and 6.7SP2 before P15 allow remote attackers to hijack the authentication of arbitrary users.    6.8  Medium  2017-01-19  2017-01-06  View
31192  CVE-2014-2862  PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 does not check authorization in unspecified situations, which allows remote authenticated users to perform actions via unknown vectors.    6.5  Medium  2017-01-19  2014-04-16  View
31704  CVE-2014-3521  The component in (1) /luci/homebase and (2) /luci/cluster menu in Red Hat Conga 0.12.2 allows remote authenticated users to bypass intended access restrictions via a crafted URL.    5.5  Medium  2017-01-19  2014-10-07  View
31960  CVE-2014-3866  Multiple cross-site request forgery (CSRF) vulnerabilities in user_settings.php in Usercake 2.0.2 and earlier allow remote attackers to hijack the authentication of administrators for requests that change the (1) administrative password via the passwordc parameter or (2) administrative e-mail address via the email parameter.    6.8  Medium  2017-01-19  2014-05-29  View
32216  CVE-2014-4200  vm-support 0.88 in VMware Tools, as distributed with VMware Workstation through 10.0.3 and other products, uses 0644 permissions for the vm-support archive, which allows local users to obtain sensitive information by extracting files from this archive.    4.7  Medium  2017-01-19  2015-12-14  View

Page 16276 of 17672, showing 5 records out of 88360 total, starting on record 81376, ending on 81380

Actions