NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
29230  CVE-2014-0331  Cross-site scripting (XSS) vulnerability in the web administration interface in FortiADC with firmware before 3.2.1 allows remote attackers to inject arbitrary web script or HTML via the locale parameter to gui_partA/.    4.3  Medium  2017-01-19  2015-07-24  View
29486  CVE-2014-0600  FileUploadServlet in the Administration service in Novell GroupWise 2014 before SP1 allows remote attackers to read or write to arbitrary files via the poLibMaintenanceFileSave parameter, aka ZDI-CAN-2287.    7.8  High  2017-01-19  2017-01-06  View
29742  CVE-2014-0906  The Meeting Server in IBM Sametime 8.x through 8.5.2.1 and 9.x through 9.0.0.1 does not check whether a session cookie is current, which allows remote attackers to conduct user-search actions by leveraging possession of a (1) expired or (2) invalidated cookie.    4.3  Medium  2017-01-19  2014-06-27  View
29998  CVE-2014-1320  IOKit in Apple iOS before 7.1.1, Apple OS X through 10.9.2, and Apple TV before 6.1.1 places kernel pointers into an object data structure, which makes it easier for local users to bypass the ASLR protection mechanism by reading unspecified attributes of the object.    4.9  Medium  2017-01-19  2014-04-24  View
30254  CVE-2014-1664  The Citrix GoToMeeting application 5.0.799.1238 for Android logs HTTP requests containing sensitive information, which allows attackers to obtain user IDs, meeting details, and authentication tokens via an application that reads the system log file.    Medium  2017-01-19  2014-01-31  View

Page 2800 of 17672, showing 5 records out of 88360 total, starting on record 13996, ending on 14000

Actions