NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 31237 | CVE-2014-2938 | Hanvon FaceID before 1.007.110 does not require authentication, which allows remote attackers to modify access-control and attendance-tracking data via API commands. | 2 | 8.3 | High | 2017-01-19 | 2014-07-16 | View | |
| 31493 | CVE-2014-3290 | The mDNS implementation in Cisco IOS XE 3.12S does not properly interact with autonomic networking, which allows remote attackers to obtain sensitive networking-services information by sniffing the network or overwrite networking-services data via a crafted mDNS response, aka Bug ID CSCun64867. | 2 | 4.8 | Medium | 2017-01-19 | 2016-09-06 | View | |
| 31749 | CVE-2014-3572 | The ssl3_get_key_exchange function in s3_clnt.c in OpenSSL before 0.9.8zd, 1.0.0 before 1.0.0p, and 1.0.1 before 1.0.1k allows remote SSL servers to conduct ECDHE-to-ECDH downgrade attacks and trigger a loss of forward secrecy by omitting the ServerKeyExchange message. | 2 | 5 | Medium | 2017-01-19 | 2017-01-02 | View | |
| 32005 | CVE-2014-3920 | Cross-site request forgery (CSRF) vulnerability in Kanboard before 1.0.6 allows remote attackers to hijack the authentication of administrators for requests that add an administrative user via a save action to the default URI. | 2 | 6.8 | Medium | 2017-01-19 | 2014-07-07 | View | |
| 32261 | CVE-2014-4245 | Unspecified vulnerability in the RDBMS Core component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, and 12.1.0.1 allows remote authenticated users to affect confidentiality via unknown vectors. | 2 | 3.5 | Low | 2017-01-19 | 2014-12-31 | View |
Page 2538 of 17672, showing 5 records out of 88360 total, starting on record 12686, ending on 12690