NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
29744 | CVE-2014-0908 | The User Attribute implementation in IBM Business Process Manager (BPM) 7.5.x through 7.5.1.2, 8.0.x through 8.0.1.2, and 8.5.x through 8.5.0.1 does not verify authorization for read or write access to attribute values, which allows remote authenticated users to obtain sensitive information, configure e-mail notifications, or modify task assignments via REST API calls. | 2 | 6 | Medium | 2017-01-19 | 2014-04-11 | View | |
30000 | CVE-2014-1322 | The kernel in Apple OS X through 10.9.2 places a kernel pointer into an XNU object data structure accessible from user space, which makes it easier for local users to bypass the ASLR protection mechanism by reading an unspecified attribute of the object. | 2 | 4.9 | Medium | 2017-01-19 | 2014-04-24 | View | |
30256 | CVE-2014-1670 | The Microsoft Bing application before 4.2.1 for Android allows remote attackers to install arbitrary APK files via vectors involving a crafted DNS response. | 2 | 6.8 | Medium | 2017-01-19 | 2014-01-31 | View | |
30768 | CVE-2014-2335 | Multiple cross-site scripting (XSS) vulnerabilities in the Web User Interface in Fortinet FortiManager before 5.0.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2014-2336. | 2 | 4.3 | Medium | 2017-01-19 | 2015-11-30 | View | |
32048 | CVE-2014-3975 | Absolute path traversal vulnerability in filemanager.php in AuraCMS 3.0 allows remote attackers to list a directory via a full pathname in the viewdir parameter. | 2 | 5 | Medium | 2017-01-19 | 2014-06-06 | View |
Page 1749 of 17672, showing 5 records out of 88360 total, starting on record 8741, ending on 8745