2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2014-5045The mountpoint_last function in fs/namei.c in the Linux kernel before 3.15.8 does not properly maintain a certain refere...
CVE-2014-3534arch/s390/kernel/ptrace.c in the Linux kernel before 3.15.8 on the s390 platform does not properly restrict address-spac...
CVE-2014-0972The kgsl graphics driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions fo...
CVE-2014-3302user.php in Cisco WebEx Meetings Server 1.5(.1.131) and earlier does not properly implement the token timer for authenti...
CVE-2014-3009The GDS component in IBM InfoSphere Master Data Management - Collaborative Edition 10.0 through 11.0 and InfoSphere Mast...
CVE-2014-2627Unspecified vulnerability in HP NonStop NetBatch G06.14 through G06.32.01, H06 through H06.28, and J06 through J06.17.01...
CVE-2014-5176SAP FI Manager Self-Service has a hard-coded user name, which makes it easier for remote attackers to obtain access via ...
CVE-2014-5175The License Measurement servlet in SAP Solution Manager 7.1 allows remote attackers to bypass authentication via unspeci...
CVE-2014-5174The SAP Netweaver Business Warehouse component does not properly restrict access to the functions in the BW-SYS-DB-DB4 f...
CVE-2014-5173SAP HANA Extend Application Services (XS) allows remote attackers to bypass access restrictions via a request to a priva...
CVE-2014-5172Multiple cross-site scripting (XSS) vulnerabilities in the XS Administration Tools in SAP HANA allow remote attackers to...
CVE-2014-5171SAP HANA Extend Application Services (XS) does not encrypt transmissions for applications that enable form based authent...
CVE-2014-3554Buffer overflow in the ndp_msg_opt_dnssl_domain function in libndp allows remote routers to cause a denial of service (c...
CVE-2014-3488The SslHandler in Netty before 3.9.2 allows remote attackers to cause a denial of service (infinite loop and CPU consump...
CVE-2014-2970Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5139. Reason: This candidate is a duplicate of...
CVE-2014-5117Tor before 0.2.4.23 and 0.2.5 before 0.2.5.6-alpha maintains a circuit after an inbound RELAY_EARLY cell is received by ...
CVE-2014-2356Innominate mGuard before 7.6.4 and 8.x before 8.0.3 does not require authentication for snapshot downloads, which allows...
CVE-2014-3025Multiple cross-site scripting (XSS) vulnerabilities in IBM Maximo Asset Management 6.2 through 6.2.8, 6.x and 7.1 throug...
CVE-2014-0948Unspecified vulnerability in IBM Rational Software Architect Design Manager and Rational Rhapsody Design Manager 3.x and...
CVE-2014-0947Unspecified vulnerability in the server in IBM Rational Software Architect Design Manager 4.0.6 allows remote authentica...
CVE-2014-0915Multiple cross-site scripting (XSS) vulnerabilities in IBM Maximo Asset Management 6.2 through 6.2.8, 6.x and 7.1 throug...
CVE-2014-0914Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 6.2 through 6.2.8 and 6.x and 7.x through 7.5.0....
CVE-2014-3897Cross-site scripting (XSS) vulnerability in Homepage Decorator PerlMailer 3.10 and earlier allows remote attackers to in...
CVE-2014-3896Multiple cross-site request forgery (CSRF) vulnerabilities in CGI programs in Seeds acmailer before 3.8.17 and 3.9.x bef...
CVE-2014-3895The I-O DATA TS-WLCAM camera with firmware 1.06 and earlier, TS-WLCAM/V camera with firmware 1.06 and earlier, TS-WPTCAM...

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now