NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 31275 | CVE-2014-2988 | EGroupware Enterprise Line (EPL) before 1.1.20140505, EGroupware Community Edition before 1.8.007.20140506, and EGroupware before 14.1 beta allows remote authenticated administrators to execute arbitrary PHP code via crafted callback values to the call_user_func PHP function, as demonstrated using the newsettings[system] parameter. NOTE: this can be exploited by remote attackers by leveraging CVE-2014-2987. | 2 | 8.5 | High | 2017-01-19 | 2015-10-22 | View | |
| 31531 | CVE-2014-3328 | The Intercluster Sync Agent Service in Cisco Unified Presence Server allows remote attackers to cause a denial of service via a TCP SYN flood, aka Bug ID CSCun34125. | 2 | 5 | Medium | 2017-01-19 | 2017-01-12 | View | |
| 31787 | CVE-2014-3623 | Apache WSS4J before 1.6.17 and 2.x before 2.0.2, as used in Apache CXF 2.7.x before 2.7.13 and 3.0.x before 3.0.2, when using TransportBinding, does not properly enforce the SAML SubjectConfirmation method security semantics, which allows remote attackers to conduct spoofing attacks via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2015-04-24 | View | |
| 32043 | CVE-2014-3969 | Xen 4.4.x, when running on an ARM system, does not properly check write permissions on virtual addresses, which allows local guest administrators to gain privileges via unspecified vectors. | 2 | 7.4 | High | 2017-01-19 | 2016-10-19 | View | |
| 32299 | CVE-2014-4285 | Unspecified vulnerability in the Oracle Applications Technology component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to Reports Configuration. | 2 | 4.3 | Medium | 2017-01-19 | 2015-11-05 | View |
Page 3215 of 17672, showing 5 records out of 88360 total, starting on record 16071, ending on 16075