NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 86581 | CVE-2017-2165 | GroupSession versions 4.6.4 and earlier allows remote authenticated attackers to bypass access restrictions to obtain sensitive information such as emails via unspecified vectors. | 2 | 4 | Medium | 2017-07-18 | 2017-06-28 | View | |
| 87349 | CVE-2016-9982 | IBM Sterling B2B Integrator Standard Edition 5.2 could allow an authenticated user to obtain sensitive information such as account lists due to improper access control. IBM X-Force ID: 120274. | 2 | 4 | Medium | 2017-06-28 | 2017-06-26 | View | |
| 32309 | CVE-2014-4295 | Unspecified vulnerability in the Java VM component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality via unknown vectors, a different vulnerability than CVE-2014-4294, CVE-2014-6538, and CVE-2014-6563. | 2 | 4 | Medium | 2017-01-19 | 2015-11-05 | View | |
| 35125 | CVE-2014-7832 | mod/lti/launch.php in the LTI module in Moodle through 2.4.11, 2.5.x before 2.5.9, 2.6.x before 2.6.6, and 2.7.x before 2.7.3 performs access control at the course level rather than at the activity level, which allows remote authenticated users to bypass the mod/lti:view capability requirement by viewing an activity instance. | 2 | 4 | Medium | 2017-01-19 | 2015-10-05 | View | |
| 45877 | CVE-2012-4495 | The Mime Mail module 6.x-1.x before 6.x-1.1 for Drupal does not properly restrict access to files outside Drupal"s publish files directory, which allows remote authenticated users to send arbitrary files as attachments. | 2 | 4 | Medium | 2017-01-19 | 2013-03-01 | View |
Page 3006 of 17672, showing 5 records out of 88360 total, starting on record 15026, ending on 15030