NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 85470 | CVE-2017-6564 | On Franklin Fueling Systems TS-550 evo 2.3.0.7332 devices, the Guest user, which contains the lowest privileges, can post to the idSourceFileName parameter found within the /download directory. This ability allows for an attacker to download sensitive system files from the host machine such as databases which contain information that can aid in further attacks. | 2 | 4 | Medium | 2017-05-27 | 2017-05-12 | View | |
| 26078 | CVE-2015-4756 | Unspecified vulnerability in Oracle MySQL Server 5.6.22 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : InnoDB, a different vulnerability than CVE-2015-0439. | 2 | 4 | Medium | 2017-01-19 | 2016-12-21 | View | |
| 31454 | CVE-2014-3225 | Absolute path traversal vulnerability in the web interface in Cobbler 2.4.x through 2.6.x allows remote authenticated users to read arbitrary files via the Kickstart field in a profile. | 2 | 4 | Medium | 2017-01-19 | 2014-05-16 | View | |
| 33758 | CVE-2014-6183 | IBM Security Network Protection 5.1 before 5.1.0.0 FP13, 5.1.1 before 5.1.1.0 FP8, 5.1.2 before 5.1.2.0 FP9, 5.1.2.1 before FP5, 5.2 before 5.2.0.0 FP5, and 5.3 before 5.3.0.0 FP1 on XGS devices allows remote authenticated users to execute arbitrary commands via unspecified vectors. | 2 | 4 | Medium | 2017-01-19 | 2014-11-24 | View | |
| 35294 | CVE-2014-8072 | The administration module in OpenMRS 2.1 Standalone Edition allows remote authenticated users to obtain read access via a direct request to /admin. | 2 | 4 | Medium | 2017-01-19 | 2014-10-24 | View |
Page 3255 of 17672, showing 5 records out of 88360 total, starting on record 16271, ending on 16275