NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
29948 | CVE-2014-1267 | The Configuration Profiles component in Apple iOS before 7.1 and Apple TV before 6.1 does not properly evaluate the expiration date of a mobile configuration profile, which allows attackers to bypass intended access restrictions by using a profile after the date has passed. | 2 | 5.8 | Medium | 2017-01-19 | 2014-03-14 | View | |
30972 | CVE-2014-2575 | Directory traversal vulnerability in the File Manager component in DevExpress ASPxFileManager Control for ASP.NET WebForms and MVC before 13.1.10 and 13.2.x before 13.2.9 allows remote authenticated users to read or write arbitrary files via a .. (dot dot) in the __EVENTARGUMENT parameter. | 2 | 6.5 | Medium | 2017-01-19 | 2014-06-18 | View | |
31228 | CVE-2014-2925 | Cross-site scripting (XSS) vulnerability in Advanced_Wireless_Content.asp in ASUS RT-AC68U and other RT series routers with firmware before 3.0.0.4.374.5047 allows remote attackers to inject arbitrary web script or HTML via the current_page parameter to apply.cgi. | 2 | 4.3 | Medium | 2017-01-19 | 2016-06-30 | View | |
31484 | CVE-2014-3280 | The web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) 9.0(.1) and earlier does not properly implement access control, which allows remote authenticated users to obtain potentially sensitive user information by visiting an unspecified Administration GUI web page, aka Bug IDs CSCun46045 and CSCun46116. | 2 | 4 | Medium | 2017-01-19 | 2016-09-07 | View | |
31996 | CVE-2014-3909 | Session fixation vulnerability in Falcon WisePoint 4.1.19.7 and earlier allows remote attackers to hijack web sessions via unspecified vectors. | 2 | 6.8 | Medium | 2017-01-19 | 2014-09-08 | View |
Page 17553 of 17672, showing 5 records out of 88360 total, starting on record 87761, ending on 87765