NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
29744  CVE-2014-0908  The User Attribute implementation in IBM Business Process Manager (BPM) 7.5.x through 7.5.1.2, 8.0.x through 8.0.1.2, and 8.5.x through 8.5.0.1 does not verify authorization for read or write access to attribute values, which allows remote authenticated users to obtain sensitive information, configure e-mail notifications, or modify task assignments via REST API calls.    Medium  2017-01-19  2014-04-11  View
30000  CVE-2014-1322  The kernel in Apple OS X through 10.9.2 places a kernel pointer into an XNU object data structure accessible from user space, which makes it easier for local users to bypass the ASLR protection mechanism by reading an unspecified attribute of the object.    4.9  Medium  2017-01-19  2014-04-24  View
30256  CVE-2014-1670  The Microsoft Bing application before 4.2.1 for Android allows remote attackers to install arbitrary APK files via vectors involving a crafted DNS response.    6.8  Medium  2017-01-19  2014-01-31  View
30768  CVE-2014-2335  Multiple cross-site scripting (XSS) vulnerabilities in the Web User Interface in Fortinet FortiManager before 5.0.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2014-2336.    4.3  Medium  2017-01-19  2015-11-30  View
32048  CVE-2014-3975  Absolute path traversal vulnerability in filemanager.php in AuraCMS 3.0 allows remote attackers to list a directory via a full pathname in the viewdir parameter.    Medium  2017-01-19  2014-06-06  View

Page 1749 of 17672, showing 5 records out of 88360 total, starting on record 8741, ending on 8745

Actions