NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
15040  CVE-2010-3683  Oracle MySQL 5.1 before 5.1.49 and 5.5 before 5.5.5 sends an OK packet when a LOAD DATA INFILE request generates SQL errors, which allows remote authenticated users to cause a denial of service (mysqld daemon crash) via a crafted request.    Medium  2017-01-18  2011-07-19  View
25792  CVE-2015-4328  Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 improperly checks for a user account"s read-only attribute, which allows remote authenticated users to execute arbitrary OS commands via crafted HTTP requests, as demonstrated by read or write operations on the Unified Communications lookup page, aka Bug ID CSCuv12552.    Medium  2017-01-19  2017-01-04  View
28352  CVE-2015-7992  SAP HANA DB 1.00.73.00.389160 (NewDB100_REL) allows remote authenticated users to cause a denial of service (memory corruption and indexserver crash) via unspecified vectors to the EXECUTE_SEARCH_RULE_SET stored procedure, aka SAP Security Note 2175928.    Medium  2017-01-19  2015-11-12  View
30144  CVE-2014-1517  The login form in Bugzilla 2.x, 3.x, 4.x before 4.4.3, and 4.5.x before 4.5.3 does not properly handle a correctly authenticated but unintended login attempt, which makes it easier for remote authenticated users to obtain sensitive information by arranging for a victim to login to the attacker"s account and then submit a vulnerability report, related to a "login CSRF" issue.    Medium  2017-01-19  2016-04-04  View
31936  CVE-2014-3837  The document application in ownCloud Server before 6.0.3 uses sequential values for the file_id, which allows remote authenticated users to enumerate shared files via unspecified vectors.    Medium  2017-01-19  2014-06-05  View

Page 3212 of 17672, showing 5 records out of 88360 total, starting on record 16056, ending on 16060

Actions