NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
83869 | CVE-2013-6446 | The JobHistory Server in Cloudera CDH 4.x before 4.6.0 and 5.x before 5.0.0 Beta 2, when using MRv2/YARN with HTTP authentication, allows remote authenticated users to obtain sensitive job information by leveraging failure to enforce job ACLs. | 2 | 3.5 | Low | 2017-03-29 | 2017-03-28 | View | |
83870 | CVE-2014-0229 | Apache Hadoop 0.23.x before 0.23.11 and 2.x before 2.4.1, as used in Cloudera CDH 5.0.x before 5.0.2, do not check authorization for the (1) refreshNamenodes, (2) deleteBlockPool, and (3) shutdownDatanode HDFS admin commands, which allows remote authenticated users to cause a denial of service (DataNodes shutdown) or perform unnecessary operations by issuing a command. | 2 | 4 | Medium | 2017-03-29 | 2017-03-28 | View | |
24223 | CVE-2015-2050 | D-Link DAP-1320 Rev Ax with firmware before 1.21b05 allows attackers to execute arbitrary commands via unspecified vectors. | 2 | 10 | High | 2017-03-29 | 2017-03-23 | View | |
83872 | CVE-2014-6440 | VideoLAN VLC media player before 2.1.5 allows remote attackers to execute arbitrary code or cause a denial of service. | 2017-03-29 | 2017-03-28 | View | ||||
83873 | CVE-2014-7279 | The Konke Smart Plug K does not require authentication for TELNET sessions, which allows remote attackers to obtain "equipment management authority" via TCP traffic to port 23. | 2 | 10 | High | 2017-03-29 | 2017-03-28 | View |
Page 1928 of 17672, showing 5 records out of 88360 total, starting on record 9636, ending on 9640