NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 29005 | CVE-2014-0062 | Race condition in the (1) CREATE INDEX and (2) unspecified ALTER TABLE commands in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 allows remote authenticated users to create an unauthorized index or read portions of unauthorized tables by creating or deleting a table with the same name during the timing window. | 2 | 4.9 | Medium | 2017-01-19 | 2017-01-06 | View | |
| 29261 | CVE-2014-0364 | The ParseRoster component in the Ignite Realtime Smack XMPP API before 4.0.0-rc1 does not verify the from attribute of a roster-query IQ stanza, which allows remote attackers to spoof IQ responses via a crafted attribute. | 2 | 5 | Medium | 2017-01-19 | 2017-01-06 | View | |
| 29773 | CVE-2014-0947 | Unspecified vulnerability in the server in IBM Rational Software Architect Design Manager 4.0.6 allows remote authenticated users to execute arbitrary code via a crafted update site. | 2 | 6 | Medium | 2017-01-19 | 2014-08-04 | View | |
| 30541 | CVE-2014-2043 | SQL injection vulnerability in Resources/System/Templates/Data.aspx in Procentia IntelliPen before 1.1.18.1658 allows remote authenticated users to execute arbitrary SQL commands via the value parameter. | 2 | 6.5 | Medium | 2017-01-19 | 2015-08-13 | View | |
| 30797 | CVE-2014-2368 | The BrowseFolder method in the bwocxrun ActiveX control in Advantech WebAccess before 7.2 allows remote attackers to read arbitrary files via a crafted call. | 2 | 5 | Medium | 2017-01-19 | 2014-07-23 | View |
Page 2780 of 17672, showing 5 records out of 88360 total, starting on record 13896, ending on 13900