NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
30962 | CVE-2014-2554 | OTRS 3.1.x before 3.1.21, 3.2.x before 3.2.16, and 3.3.x before 3.3.6 allows remote attackers to conduct clickjacking attacks via an IFRAME element. | 2 | 4.3 | Medium | 2017-01-19 | 2014-04-24 | View | |
31218 | CVE-2014-2900 | wolfSSL CyaSSL before 2.9.4 does not properly validate X.509 certificates with unknown critical extensions, which allows man-in-the-middle attackers to spoof servers via crafted X.509 certificate. | 2 | 5.8 | Medium | 2017-01-19 | 2017-01-03 | View | |
31474 | CVE-2014-3270 | The DHCPv6 implementation in Cisco IOS XR allows remote attackers to cause a denial of service (process hang) via a malformed packet, aka Bug ID CSCul80924. | 2 | 5 | Medium | 2017-01-19 | 2016-09-07 | View | |
31730 | CVE-2014-3552 | The Shibboleth authentication plugin in auth/shibboleth/index.php in Moodle through 2.3.11, 2.4.x before 2.4.11, and 2.5.x before 2.5.7 does not check whether a session ID is empty, which allows remote authenticated users to hijack sessions via crafted plugin interaction. | 2 | 6 | Medium | 2017-01-19 | 2014-07-29 | View | |
31986 | CVE-2014-3899 | Gretech GOM Player 2.2.51.5149 and earlier allows remote attackers to cause a denial of service (launch outage) via a crafted image file. | 2 | 4.3 | Medium | 2017-01-19 | 2014-08-12 | View |
Page 16763 of 17672, showing 5 records out of 88360 total, starting on record 83811, ending on 83815