NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
29974 | CVE-2014-1295 | Secure Transport in Apple iOS before 7.1.1, Apple OS X 10.8.x and 10.9.x through 10.9.2, and Apple TV before 6.1.1 does not ensure that a server"s X.509 certificate is the same during renegotiation as it was before renegotiation, which allows man-in-the-middle attackers to obtain sensitive information or modify TLS session data via a "triple handshake attack." | 2 | 6.8 | Medium | 2017-01-19 | 2014-04-23 | View | |
30230 | CVE-2014-1615 | Multiple cross-site request forgery (CSRF) vulnerabilities in Carbon Black before 4.1.0 allow remote attackers to hijack the authentication of administrators for requests that add new administrative users and have other unspecified action, as demonstrated by a request to api/user. | 2 | 6.8 | Medium | 2017-01-19 | 2014-04-23 | View | |
30486 | CVE-2014-1973 | Directory traversal vulnerability in the NextApp File Explorer application before 2.1.0.3 for Android allows remote attackers to overwrite or create arbitrary files via a crafted filename. | 2 | 5 | Medium | 2017-01-19 | 2015-08-05 | View | |
30742 | CVE-2014-2301 | OrbiTeam BSCW before 5.0.8 allows remote attackers to obtain sensitive metadata via the inf operations (op=inf) to an object in pub/bscw.cgi/. | 2 | 5 | Medium | 2017-01-19 | 2014-05-13 | View | |
30998 | CVE-2014-2608 | Unspecified vulnerability in HP Smart Update Manager 6.x before 6.4.1 on Windows, and 6.2.x through 6.4.x before 6.4.1 on Linux, allows local users to obtain sensitive information, and consequently gain privileges, via unknown vectors. | 2 | 2.1 | Low | 2017-01-19 | 2014-12-12 | View |
Page 1885 of 17672, showing 5 records out of 88360 total, starting on record 9421, ending on 9425