NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
30726 | CVE-2014-2276 | The FileUploadController servlet in EMC Connectrix Manager Converged Network Edition (CMCNE) before 12.1.5 does not properly restrict additions to the Connectrix Manager repository, which allows remote attackers to obtain sensitive information by importing a crafted firmware file. | 2 | 5 | Medium | 2017-01-19 | 2014-04-01 | View | |
30982 | CVE-2014-2588 | Directory traversal vulnerability in servlet/downloadReport in McAfee Asset Manager 6.6 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the reportFileName parameter. | 2 | 4 | Medium | 2017-01-19 | 2014-04-01 | View | |
31238 | CVE-2014-2939 | Multiple cross-site scripting (XSS) vulnerabilities in Alfresco Enterprise before 4.1.6.13 allow remote attackers to inject arbitrary web script or HTML via (1) an XHTML document, (2) a <% tag, or (3) the taskId parameter to share/page/task-edit. | 2 | 4.3 | Medium | 2017-01-19 | 2014-06-03 | View | |
31494 | CVE-2014-3291 | Cisco Wireless LAN Controller (WLC) devices allow remote attackers to cause a denial of service (NULL pointer dereference and device restart) via a zero value in Cisco Discovery Protocol packet data that is not properly handled during SNMP polling, aka Bug ID CSCuo12321. | 2 | 5.7 | Medium | 2017-01-19 | 2016-09-07 | View | |
31750 | CVE-2014-3573 | The oVirt Engine backend module, as used in Red Hat Enterprise Virtualization Manager before 3.4.2, uses an "insecure DocumentBuilderFactory," which allows remote attackers to read arbitrary files or possibly have other unspecified impact via a crafted XML/RSDL document, related to an XML External Entity (XXE) issue. | 2 | 6.5 | Medium | 2017-01-19 | 2014-10-23 | View |
Page 394 of 17672, showing 5 records out of 88360 total, starting on record 1966, ending on 1970