2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0087 | — | — | 1.8% | Jan 11, 2018 | The check_privileges method in vmdb/app/controllers/application_controller.rb in ManageIQ, as used in Red Hat CloudForms... |
| CVE-2014-5004 | — | — | 0.4% | Jan 10, 2018 | lib/brbackup.rb in the brbackup gem 0.1.1 for Ruby places the database password on the mysql command line, which allows ... |
| CVE-2014-5003 | — | — | 0.4% | Jan 10, 2018 | chef/travis-cookbooks/ci_environment/perlbrew/recipes/default.rb in the ciborg gem 3.0.0 for Ruby allows local users to ... |
| CVE-2014-5002 | — | — | 0.5% | Jan 10, 2018 | The lynx gem before 1.0.0 for Ruby places the configured password on command lines, which allows local users to obtain s... |
| CVE-2014-5001 | — | — | 0.5% | Jan 10, 2018 | lib/ksymfony1.rb in the kcapifony gem 2.1.6 for Ruby places database user passwords on the (1) mysqldump, (2) pg_dump, (... |
| CVE-2014-5000 | — | — | 0.5% | Jan 10, 2018 | The login function in lib/lawn.rb in the lawn-login gem 0.0.7 for Ruby places credentials on the curl command line, whic... |
| CVE-2014-4999 | — | — | 0.5% | Jan 10, 2018 | vendor/plugins/dataset/lib/dataset/database/mysql.rb in the kajam gem 1.0.3.rc2 for Ruby places the mysql user password ... |
| CVE-2014-4998 | — | — | 0.5% | Jan 10, 2018 | test/tc_database.rb in the lean-ruport gem 0.3.8 for Ruby places the mysql user password on the mysqldump command line, ... |
| CVE-2014-4997 | — | — | 0.5% | Jan 10, 2018 | lib/commands/setup.rb in the point-cli gem 0.0.1 for Ruby places credentials on the curl command line, which allows loca... |
| CVE-2014-4996 | — | — | 0.4% | Jan 10, 2018 | lib/vlad/dba/mysql.rb in the VladTheEnterprising gem 0.2 for Ruby allows local users to write to arbitrary files via a s... |
| CVE-2014-4995 | — | — | 0.3% | Jan 10, 2018 | Race condition in lib/vlad/dba/mysql.rb in the VladTheEnterprising gem 0.2 for Ruby allows local users to obtain sensiti... |
| CVE-2014-4994 | — | — | 0.5% | Jan 10, 2018 | lib/gyazo/client.rb in the gyazo gem 1.0.0 for Ruby allows local users to write to arbitrary files via a symlink attack ... |
| CVE-2014-4993 | — | — | 0.5% | Jan 10, 2018 | (1) lib/backup/cli/utility.rb in the backup-agoddard gem 3.0.28 and (2) lib/backup/cli/utility.rb in the backup_checksum... |
| CVE-2014-4992 | — | — | 0.5% | Jan 10, 2018 | lib/cap-strap/helpers.rb in the cap-strap gem 0.1.5 for Ruby places credentials on the useradd command line, which allow... |
| CVE-2014-4991 | — | — | 0.5% | Jan 10, 2018 | (1) lib/dataset/database/mysql.rb and (2) lib/dataset/database/postgresql.rb in the codders-dataset gem 1.3.2.1 for Ruby... |
| CVE-2014-7222 | — | — | 11.0% | Jan 8, 2018 | Buffer overflow in TeamSpeak Client 3.0.14 and earlier allows remote authenticated users to cause a denial of service (a... |
| CVE-2014-7221 | — | — | 11.0% | Jan 8, 2018 | TeamSpeak Client 3.0.14 and earlier allows remote authenticated users to cause a denial of service (buffer overflow and ... |
| CVE-2014-5509 | — | — | 0.4% | Jan 8, 2018 | clipedit in the Clipboard module for Perl allows local users to delete arbitrary files via a symlink attack on /tmp/clip... |
| CVE-2014-5394 | — | — | 1.7% | Jan 8, 2018 | Multiple Huawei Campus switches allow remote attackers to enumerate usernames via vectors involving use of SSH by the ma... |
| CVE-2014-5334 | — | — | 5.1% | Jan 8, 2018 | FreeNAS before 9.3-M3 has a blank admin password, which allows remote attackers to gain root privileges by leveraging a ... |
| CVE-2014-4972 | — | — | 4.7% | Jan 8, 2018 | Unrestricted file upload vulnerability in the Gravity Upload Ajax plugin 1.1 and earlier for WordPress allows remote att... |
| CVE-2014-3607 | — | — | 0.9% | Jan 8, 2018 | DefaultHostnameVerifier in Ldaptive (formerly vt-ldap) does not properly verify that the server hostname matches a domai... |
| CVE-2014-2071 | — | — | 0.6% | Jan 8, 2018 | Aruba Networks ClearPass Policy Manager 6.1.x, 6.2.x before 6.2.5.61640 and 6.3.x before 6.3.0.61712, when configured to... |
| CVE-2014-1859 | — | — | 0.5% | Jan 8, 2018 | (1) core/tests/test_memmap.py, (2) core/tests/test_multiarray.py, (3) f2py/f2py2e.py, and (4) lib/tests/test_io.py in Nu... |
| CVE-2014-1858 | — | — | 0.4% | Jan 8, 2018 | __init__.py in f2py in NumPy before 1.8.1 allows local users to write to arbitrary files via a symlink attack on a tempo... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now