NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
87007  CVE-2017-8450  X-Pack 5.1.1 did not properly apply document and field level security to multi-search and multi-get requests so users without access to a document and/or field may have been able to access this information.    Medium  2017-07-18  2017-07-05  View
88031  CVE-2017-6703  A vulnerability in the web application in the Cisco Prime Collaboration Provisioning tool could allow an unauthenticated, remote attacker to hijack another user's session. More Information: CSCvc90346. Known Affected Releases: 12.1.    Medium  2017-07-18  2017-07-07  View
26591  CVE-2015-5433  HP Virtual Connect Enterprise Manager (VCEM) SDK before 7.5.0, as used in HP Matrix Operating Environment before 7.5.0 and other products, allows remote authenticated users to obtain sensitive information via unspecified vectors.    Medium  2017-01-19  2015-08-27  View
32223  CVE-2014-4207  Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier allows remote authenticated users to affect availability via vectors related to SROPTZR.    Medium  2017-01-19  2017-01-06  View
39903  CVE-2013-4273  The Entity API module 7.x-1.x before 7.x-1.2 for Drupal does not properly restrict access to node comments, which allows remote authenticated users to read the comments via unspecified vectors. NOTE: this identifier was SPLIT per ADT5 due to different researcher organizations. CVE-2013-7391 was assigned for the View vector.    Medium  2017-01-18  2015-02-27  View

Page 3257 of 17672, showing 5 records out of 88360 total, starting on record 16281, ending on 16285

Actions