NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 31818 | CVE-2014-3667 | Jenkins before 1.583 and LTS before 1.565.3 does not properly prevent downloading of plugins, which allows remote authenticated users with the Overall/READ permission to obtain sensitive information by reading the plugin code. | 2 | 4 | Medium | 2017-01-19 | 2016-06-15 | View | |
| 32074 | CVE-2014-4011 | SAP Capacity Leveling has hardcoded credentials, which makes it easier for remote attackers to obtain access via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2014-06-18 | View | |
| 32586 | CVE-2014-4628 | Cross-site scripting (XSS) vulnerability in EMC Isilon InsightIQ 2.x and 3.x before 3.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-19 | 2014-12-15 | View | |
| 32842 | CVE-2014-5016 | Multiple cross-site scripting (XSS) vulnerabilities in LimeSurvey 2.05+ Build 140618 allow remote attackers to inject arbitrary web script or HTML via (1) the pid attribute to the getAttribute_json function to application/controllers/admin/participantsaction.php in CPDB, (2) the sa parameter to application/views/admin/globalSettings_view.php, or (3) a crafted CSV file to the "Import CSV" functionality. | 2 | 4.3 | Medium | 2017-01-19 | 2014-07-22 | View | |
| 33098 | CVE-2014-5421 | CareFusion Pyxis SupplyStation 8.1 with hardware test tool 1.0.16 and earlier has a hardcoded database password, which makes it easier for local users to gain privileges by leveraging cabinet access. | 2 | 6.8 | Medium | 2017-01-19 | 2014-10-22 | View |
Page 2678 of 17672, showing 5 records out of 88360 total, starting on record 13386, ending on 13390