NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
21893  CVE-2016-7572  The system.temporary route in Drupal 8.x before 8.1.10 does not properly check for "Export configuration" permission, which allows remote authenticated users to bypass intended access restrictions and read a full config export via unspecified vectors.    Medium  2017-01-19  2016-10-04  View
22917  CVE-2015-0439  Unspecified vulnerability in Oracle MySQL Server 5.6.22 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : InnoDB, a different vulnerability than CVE-2015-4756.    Medium  2017-01-19  2017-01-02  View
26245  CVE-2015-4929  IBM License Metric Tool 9 before 9.2.1.0 and Endpoint Manager for Software Use Analysis 9 before 9.2.1.0 allow remote authenticated users to bypass intended access restrictions and obtain sensitive information via a REST API request.    Medium  2017-01-19  2016-12-07  View
33669  CVE-2014-6064  The Accounts tab in the administrative user interface in McAfee Web Gateway (MWG) before 7.3.2.9 and 7.4.x before 7.4.2 allows remote authenticated users to obtain the hashed user passwords via unspecified vectors.    Medium  2017-01-19  2015-12-14  View
36229  CVE-2014-9577  VDG Security SENSE (formerly DIVA) 2.3.13 sends the user database when a user logs in, which allows remote authenticated users to obtain usernames and password hashes by logging in to TCP port 51410 and reading the response.    Medium  2017-01-19  2015-01-08  View

Page 3127 of 17672, showing 5 records out of 88360 total, starting on record 15631, ending on 15635

Actions