NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
86581  CVE-2017-2165  GroupSession versions 4.6.4 and earlier allows remote authenticated attackers to bypass access restrictions to obtain sensitive information such as emails via unspecified vectors.    Medium  2017-07-18  2017-06-28  View
87349  CVE-2016-9982  IBM Sterling B2B Integrator Standard Edition 5.2 could allow an authenticated user to obtain sensitive information such as account lists due to improper access control. IBM X-Force ID: 120274.    Medium  2017-06-28  2017-06-26  View
32309  CVE-2014-4295  Unspecified vulnerability in the Java VM component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality via unknown vectors, a different vulnerability than CVE-2014-4294, CVE-2014-6538, and CVE-2014-6563.    Medium  2017-01-19  2015-11-05  View
35125  CVE-2014-7832  mod/lti/launch.php in the LTI module in Moodle through 2.4.11, 2.5.x before 2.5.9, 2.6.x before 2.6.6, and 2.7.x before 2.7.3 performs access control at the course level rather than at the activity level, which allows remote authenticated users to bypass the mod/lti:view capability requirement by viewing an activity instance.    Medium  2017-01-19  2015-10-05  View
45877  CVE-2012-4495  The Mime Mail module 6.x-1.x before 6.x-1.1 for Drupal does not properly restrict access to files outside Drupal"s publish files directory, which allows remote authenticated users to send arbitrary files as attachments.    Medium  2017-01-19  2013-03-01  View

Page 3006 of 17672, showing 5 records out of 88360 total, starting on record 15026, ending on 15030

Actions