2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-4767 | — | — | 2.7% | Aug 22, 2014 | IBM WebSphere Application Server (WAS) Liberty Profile 8.5.x before 8.5.5.3 does not properly use the Liberty Repository... |
| CVE-2014-4764 | — | — | 2.4% | Aug 22, 2014 | IBM WebSphere Application Server (WAS) 8.0.x before 8.0.0.10 and 8.5.x before 8.5.5.3, when Load Balancer for IPv4 Dispa... |
| CVE-2014-3436 | — | — | 1.1% | Aug 22, 2014 | Symantec Encryption Desktop 10.3.x before 10.3.2 MP3, and Symantec PGP Desktop 10.0.x through 10.2.x, allows remote atta... |
| CVE-2014-3089 | — | — | 0.4% | Aug 22, 2014 | The RDS Java Client library in IBM Rational Directory Server (RDS) 5.1.1.x before 5.1.1.2 iFix004 and 5.2.x before 5.2.1... |
| CVE-2014-3083 | — | — | 2.1% | Aug 22, 2014 | IBM WebSphere Application Server (WAS) 7.0.x before 7.0.0.35, 8.0.x before 8.0.0.10, and 8.5.x before 8.5.5.3 does not p... |
| CVE-2014-3070 | — | — | 2.1% | Aug 22, 2014 | The addFileRegistryAccount Virtual Member Manager (VMM) SPI Admin Task in IBM WebSphere Application Server (WAS) 8.0.x b... |
| CVE-2014-3022 | — | — | 2.0% | Aug 22, 2014 | IBM WebSphere Application Server (WAS) 7.0.x before 7.0.0.33, 8.0.x before 8.0.0.9, and 8.5.x before 8.5.5.3 allows remo... |
| CVE-2014-0965 | — | — | 2.0% | Aug 22, 2014 | IBM WebSphere Application Server (WAS) 7.0.x before 7.0.0.33, 8.0.x before 8.0.0.9, and 8.5.x before 8.5.5.3 allows remo... |
| CVE-2014-5385 | — | — | 1.1% | Aug 21, 2014 | com/salesmanager/central/profile/ProfileAction.java in Shopizer 1.1.5 and earlier does not restrict the number of authen... |
| CVE-2014-5384 | — | — | 1.8% | Aug 21, 2014 | The VIQR module in the iconv implementation in FreeBSD 10.0 before p6 and NetBSD allows context-dependent attackers to c... |
| CVE-2014-3951 | — | — | 1.8% | Aug 21, 2014 | The HZ module in the iconv implementation in FreeBSD 10.0 before p6 and NetBSD allows context-dependent attackers to cau... |
| CVE-2014-5383 | — | — | 21.2% | Aug 21, 2014 | SQL injection vulnerability in AlienVault OSSIM before 4.7.0 allows remote authenticated users to execute arbitrary SQL ... |
| CVE-2014-5210 | — | — | 14.9% | Aug 21, 2014 | The av-centerd SOAP service in AlienVault OSSIM before 4.7.0 allows remote attackers to execute arbitrary commands via a... |
| CVE-2014-5159 | — | — | 1.3% | Aug 21, 2014 | SQL injection vulnerability in the ossim-framework service in AlienVault OSSIM before 4.6.0 allows remote attackers to e... |
| CVE-2014-5158 | — | — | 3.7% | Aug 21, 2014 | The (1) av-centerd SOAP service and (2) backup command in the ossim-framework service in AlienVault OSSIM before 4.6.0 a... |
| CVE-2014-3577 | — | — | 9.1% | Aug 21, 2014 | org.apache.http.conn.ssl.AbstractVerifier in Apache HttpComponents HttpClient before 4.3.5 and HttpAsyncClient before 4.... |
| CVE-2014-3562 | — | — | 2.2% | Aug 21, 2014 | Red Hat Directory Server 8 and 389 Directory Server, when debugging is enabled, allows remote attackers to obtain sensit... |
| CVE-2014-5382 | — | — | 1.0% | Aug 20, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the web interface in Schrack Technik microControl with firmware 1... |
| CVE-2014-4929 | — | — | 2.3% | Aug 20, 2014 | Directory traversal vulnerability in the routing component in ownCloud Server before 5.0.17 and 6.0.x before 6.0.4 allow... |
| CVE-2014-2524 | — | — | 0.4% | Aug 20, 2014 | The _rl_tropen function in util.c in GNU readline before 6.3 patch 3 allows local users to create or overwrite arbitrary... |
| CVE-2014-4750 | — | — | 0.6% | Aug 20, 2014 | IBM PowerVC Express Edition 1.2.0 before FixPack3 establishes an FTP session for transferring files to a managed IVM, wh... |
| CVE-2014-4749 | — | — | 0.9% | Aug 20, 2014 | IBM PowerVC 1.2.0 before FixPack3 does not properly use the known_hosts file, which allows man-in-the-middle attackers t... |
| CVE-2014-4618 | — | — | 2.4% | Aug 20, 2014 | EMC Documentum Content Server before 6.7 SP2 P16 and 7.x before 7.1 P07 allows remote authenticated users to gain privil... |
| CVE-2014-3514 | — | — | 2.8% | Aug 20, 2014 | activerecord/lib/active_record/relation/query_methods.rb in Active Record in Ruby on Rails 4.0.x before 4.0.9 and 4.1.x ... |
| CVE-2014-3340 | — | — | 2.3% | Aug 20, 2014 | Directory traversal vulnerability in an unspecified PHP script in the server in Cisco WebEx MeetMeNow allows remote auth... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now