NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
30706 | CVE-2014-2249 | Cross-site request forgery (CSRF) vulnerability on Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 and SIMATIC S7-1200 CPU PLC devices with firmware before 4.0 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors. | 2 | 5.8 | Medium | 2017-01-19 | 2014-03-26 | View | |
30962 | CVE-2014-2554 | OTRS 3.1.x before 3.1.21, 3.2.x before 3.2.16, and 3.3.x before 3.3.6 allows remote attackers to conduct clickjacking attacks via an IFRAME element. | 2 | 4.3 | Medium | 2017-01-19 | 2014-04-24 | View | |
31218 | CVE-2014-2900 | wolfSSL CyaSSL before 2.9.4 does not properly validate X.509 certificates with unknown critical extensions, which allows man-in-the-middle attackers to spoof servers via crafted X.509 certificate. | 2 | 5.8 | Medium | 2017-01-19 | 2017-01-03 | View | |
31474 | CVE-2014-3270 | The DHCPv6 implementation in Cisco IOS XR allows remote attackers to cause a denial of service (process hang) via a malformed packet, aka Bug ID CSCul80924. | 2 | 5 | Medium | 2017-01-19 | 2016-09-07 | View | |
31730 | CVE-2014-3552 | The Shibboleth authentication plugin in auth/shibboleth/index.php in Moodle through 2.3.11, 2.4.x before 2.4.11, and 2.5.x before 2.5.7 does not check whether a session ID is empty, which allows remote authenticated users to hijack sessions via crafted plugin interaction. | 2 | 6 | Medium | 2017-01-19 | 2014-07-29 | View |
Page 16412 of 17672, showing 5 records out of 88360 total, starting on record 82056, ending on 82060