NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 21893 | CVE-2016-7572 | The system.temporary route in Drupal 8.x before 8.1.10 does not properly check for "Export configuration" permission, which allows remote authenticated users to bypass intended access restrictions and read a full config export via unspecified vectors. | 2 | 4 | Medium | 2017-01-19 | 2016-10-04 | View | |
| 22917 | CVE-2015-0439 | Unspecified vulnerability in Oracle MySQL Server 5.6.22 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : InnoDB, a different vulnerability than CVE-2015-4756. | 2 | 4 | Medium | 2017-01-19 | 2017-01-02 | View | |
| 26245 | CVE-2015-4929 | IBM License Metric Tool 9 before 9.2.1.0 and Endpoint Manager for Software Use Analysis 9 before 9.2.1.0 allow remote authenticated users to bypass intended access restrictions and obtain sensitive information via a REST API request. | 2 | 4 | Medium | 2017-01-19 | 2016-12-07 | View | |
| 33669 | CVE-2014-6064 | The Accounts tab in the administrative user interface in McAfee Web Gateway (MWG) before 7.3.2.9 and 7.4.x before 7.4.2 allows remote authenticated users to obtain the hashed user passwords via unspecified vectors. | 2 | 4 | Medium | 2017-01-19 | 2015-12-14 | View | |
| 36229 | CVE-2014-9577 | VDG Security SENSE (formerly DIVA) 2.3.13 sends the user database when a user logs in, which allows remote authenticated users to obtain usernames and password hashes by logging in to TCP port 51410 and reading the response. | 2 | 4 | Medium | 2017-01-19 | 2015-01-08 | View |
Page 3127 of 17672, showing 5 records out of 88360 total, starting on record 15631, ending on 15635