NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 30214 | CVE-2014-1591 | Mozilla Firefox 33.0 and SeaMonkey before 2.31 include path strings in CSP violation reports, which allows remote attackers to obtain sensitive information via a web site that receives a report after a redirect. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View | |
| 30470 | CVE-2014-1956 | CRLF injection vulnerability in FortiGuard FortiWeb before 5.0.3 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2014-07-18 | View | |
| 30726 | CVE-2014-2276 | The FileUploadController servlet in EMC Connectrix Manager Converged Network Edition (CMCNE) before 12.1.5 does not properly restrict additions to the Connectrix Manager repository, which allows remote attackers to obtain sensitive information by importing a crafted firmware file. | 2 | 5 | Medium | 2017-01-19 | 2014-04-01 | View | |
| 30982 | CVE-2014-2588 | Directory traversal vulnerability in servlet/downloadReport in McAfee Asset Manager 6.6 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the reportFileName parameter. | 2 | 4 | Medium | 2017-01-19 | 2014-04-01 | View | |
| 31238 | CVE-2014-2939 | Multiple cross-site scripting (XSS) vulnerabilities in Alfresco Enterprise before 4.1.6.13 allow remote attackers to inject arbitrary web script or HTML via (1) an XHTML document, (2) a <% tag, or (3) the taskId parameter to share/page/task-edit. | 2 | 4.3 | Medium | 2017-01-19 | 2014-06-03 | View |
Page 2597 of 17672, showing 5 records out of 88360 total, starting on record 12981, ending on 12985