NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 35404 | CVE-2014-8309 | SAP BusinessObjects 4.0 and BusinessObjects XI (BOXI) R2 and 3.1 generates error messages for a failed logon attempt with different time delays depending on whether the user account exists, which allows remote attackers to enumerate valid usernames via SecEnterprise authentication requests to the Session web service. | 2 | 5 | Medium | 2017-01-19 | 2014-10-23 | View | |
| 35660 | CVE-2014-8666 | The User & Server configuration, InfoView refresh, user rights (BI-BIP-ADM) component in SAP Business Intellignece allows remote attackers to obtain audit event details via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2014-11-06 | View | |
| 35916 | CVE-2014-9156 | The FileField module 6.x-3.x before 6.x-3.13 for Drupal does not properly check permissions to view files, which allows remote authenticated users with permission to create or edit content to read private files by attaching an uploaded file. | 2 | 4 | Medium | 2017-01-19 | 2014-12-01 | View | |
| 36684 | CVE-2013-0338 | libxml2 2.9.0 and earlier allows context-dependent attackers to cause a denial of service (CPU and memory consumption) via an XML file containing an entity declaration with long replacement text and many references to this entity, aka "internal entity expansion" with linear complexity. | 2 | 4.3 | Medium | 2017-01-18 | 2016-06-16 | View | |
| 37452 | CVE-2013-1208 | The encryption functionality in Cisco NX-OS on the Nexus 1000V does not properly handle Virtual Supervisor Module (VSM) to Virtual Ethernet Module (VEM) communication, which allows remote attackers to intercept or modify network traffic by leveraging certain Layer 2 or Layer 3 access, aka Bug ID CSCud14691. | 2 | 5.8 | Medium | 2017-01-18 | 2013-05-30 | View |
Page 2748 of 17672, showing 5 records out of 88360 total, starting on record 13736, ending on 13740