NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
35404  CVE-2014-8309  SAP BusinessObjects 4.0 and BusinessObjects XI (BOXI) R2 and 3.1 generates error messages for a failed logon attempt with different time delays depending on whether the user account exists, which allows remote attackers to enumerate valid usernames via SecEnterprise authentication requests to the Session web service.    Medium  2017-01-19  2014-10-23  View
35660  CVE-2014-8666  The User & Server configuration, InfoView refresh, user rights (BI-BIP-ADM) component in SAP Business Intellignece allows remote attackers to obtain audit event details via unspecified vectors.    Medium  2017-01-19  2014-11-06  View
35916  CVE-2014-9156  The FileField module 6.x-3.x before 6.x-3.13 for Drupal does not properly check permissions to view files, which allows remote authenticated users with permission to create or edit content to read private files by attaching an uploaded file.    Medium  2017-01-19  2014-12-01  View
36684  CVE-2013-0338  libxml2 2.9.0 and earlier allows context-dependent attackers to cause a denial of service (CPU and memory consumption) via an XML file containing an entity declaration with long replacement text and many references to this entity, aka "internal entity expansion" with linear complexity.    4.3  Medium  2017-01-18  2016-06-16  View
37452  CVE-2013-1208  The encryption functionality in Cisco NX-OS on the Nexus 1000V does not properly handle Virtual Supervisor Module (VSM) to Virtual Ethernet Module (VEM) communication, which allows remote attackers to intercept or modify network traffic by leveraging certain Layer 2 or Layer 3 access, aka Bug ID CSCud14691.    5.8  Medium  2017-01-18  2013-05-30  View

Page 2748 of 17672, showing 5 records out of 88360 total, starting on record 13736, ending on 13740

Actions