NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
31483 | CVE-2014-3279 | The Administration GUI in the web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) 9.0(.1) and earlier does not properly implement access control, which allows remote attackers to enumerate account names via a crafted URL, aka Bug IDs CSCun39631 and CSCun39643. | 2 | 5 | Medium | 2017-01-19 | 2015-12-04 | View | |
31739 | CVE-2014-3562 | Red Hat Directory Server 8 and 389 Directory Server, when debugging is enabled, allows remote attackers to obtain sensitive replicated metadata by searching the directory. | 2 | 5 | Medium | 2017-01-19 | 2014-08-21 | View | |
31995 | CVE-2014-3908 | The Amazon.com Kindle application before 4.5.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 5.8 | Medium | 2017-01-19 | 2014-09-02 | View | |
32507 | CVE-2014-4529 | Cross-site scripting (XSS) vulnerability in fpg_preview.php in the Flash Photo Gallery plugin 0.7 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the path parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2014-07-11 | View | |
33019 | CVE-2014-5318 | The jigbrowser+ application 1.8.1 and earlier for iOS allows remote attackers to bypass the Same Origin Policy via crafted JavaScript code. | 2 | 5.8 | Medium | 2017-01-19 | 2017-01-06 | View |
Page 17517 of 17672, showing 5 records out of 88360 total, starting on record 87581, ending on 87585