NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 23874 | CVE-2015-1613 | RhodeCode before 2.2.7 allows remote authenticated users to obtain API keys and other sensitive information via the (1) update_repo, (2) get_locks, or (3) get_user_groups API method. | 2 | 4 | Medium | 2017-01-19 | 2015-02-17 | View | |
| 26434 | CVE-2015-5217 | providers/saml2/admin.py in the Identity Provider (IdP) server in Ipsilon 0.1.0 before 1.0.1 does not properly check permissions to update the SAML2 Service Provider (SP) owner, which allows remote authenticated users to cause a denial of service via a duplicate SP name. | 2 | 4 | Medium | 2017-01-19 | 2015-11-18 | View | |
| 35138 | CVE-2014-7846 | tag/tag_autocomplete.php in Moodle through 2.4.11, 2.5.x before 2.5.9, 2.6.x before 2.6.6, and 2.7.x before 2.7.3 does not consider the moodle/tag:edit capability before adding a tag, which allows remote authenticated users to bypass intended access restrictions via an AJAX request. | 2 | 4 | Medium | 2017-01-19 | 2015-09-03 | View | |
| 39490 | CVE-2013-3766 | Unspecified vulnerability in the Primavera P6 Enterprise Project Portfolio Management component in Oracle Primavera Products Suite 8.1, 8.2, and 8.3 allows remote authenticated users to affect integrity via unknown vectors related to Web Access. | 2 | 4 | Medium | 2017-01-18 | 2013-10-16 | View | |
| 53826 | CVE-2007-1642 | Unspecified vulnerability in ManageEngine Firewall Analyzer allows remote authenticated users to "access any common file" via a direct URL request. | 2 | 4 | Medium | 2017-01-07 | 2008-11-13 | View |
Page 3026 of 17672, showing 5 records out of 88360 total, starting on record 15126, ending on 15130