NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
30987 | CVE-2014-2597 | PCNetSoftware RAC Server 4.0.4 and 4.0.5 allows local users to cause a denial of service (disabled keyboard or crash) via a large input buffer to unspecified IOCTL requests in RACDriver.sys, which triggers a buffer over-read. | 2 | 4.9 | Medium | 2017-01-19 | 2014-04-21 | View | |
31243 | CVE-2014-2946 | Cross-site request forgery (CSRF) vulnerability in api/sms/send-sms in the Web UI 11.010.06.01.858 on Huawei E303 modems with software 22.157.18.00.858 allows remote attackers to hijack the authentication of administrators for requests that perform API operations and send SMS messages via a request element in an XML document. | 2 | 6.8 | Medium | 2017-01-19 | 2014-06-18 | View | |
31499 | CVE-2014-3296 | The XML programmatic interface (XML PI) in Cisco WebEx Meeting Server 1.5(.1.131) and earlier allows remote authenticated users to obtain sensitive meeting information via a crafted URL, aka Bug ID CSCum03527. | 2 | 4 | Medium | 2017-01-19 | 2017-01-12 | View | |
31755 | CVE-2014-3578 | Directory traversal vulnerability in Pivotal Spring Framework 3.x before 3.2.9 and 4.0 before 4.0.5 allows remote attackers to read arbitrary files via a crafted URL. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View | |
32523 | CVE-2014-4552 | Cross-site scripting (XSS) vulnerability in library/includes/payment/paypalexpress/DoDirectPayment.php in the Spotlight (spotlightyour) plugin 4.7 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the paymentType parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2014-07-10 | View |
Page 419 of 17672, showing 5 records out of 88360 total, starting on record 2091, ending on 2095