2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0248 | — | — | 3.5% | Jul 7, 2014 | org.jboss.seam.web.AuthenticationFilter in Red Hat JBoss Web Framework Kit 2.5.0, JBoss Enterprise Application Platform ... |
| CVE-2014-0184 | — | — | 0.4% | Jul 7, 2014 | Red Hat CloudForms 3.0 Management Engine (CFME) before 5.2.4.2 logs the root password when deploying a VM, which allows ... |
| CVE-2014-0180 | — | — | 1.8% | Jul 7, 2014 | The wait_for_task function in app/controllers/application_controller.rb in Red Hat CloudForms 3.0 Management Engine (CFM... |
| CVE-2014-0176 | — | — | 1.4% | Jul 7, 2014 | Cross-site scripting (XSS) vulnerability in application/panel_control in CloudForms 3.0 Management Engine (CFME) before ... |
| CVE-2014-0035 | — | — | 7.1% | Jul 7, 2014 | The SymmetricBinding in Apache CXF before 2.6.13 and 2.7.x before 2.7.10, when EncryptBeforeSigning is enabled and the U... |
| CVE-2014-0034 | — | — | 7.4% | Jul 7, 2014 | The SecurityTokenService (STS) in Apache CXF before 2.6.12 and 2.7.x before 2.7.9 does not properly validate SAML tokens... |
| CVE-2014-3483 | — | — | 4.2% | Jul 7, 2014 | SQL injection vulnerability in activerecord/lib/active_record/connection_adapters/postgresql/quoting.rb in the PostgreSQ... |
| CVE-2014-3482 | — | — | 4.9% | Jul 7, 2014 | SQL injection vulnerability in activerecord/lib/active_record/connection_adapters/postgresql_adapter.rb in the PostgreSQ... |
| CVE-2014-3308 | — | — | 2.8% | Jul 7, 2014 | Cisco IOS XR on Trident line cards in ASR 9000 devices lacks a static punt policer, which allows remote attackers to cau... |
| CVE-2014-3300 | — | — | 21.9% | Jul 7, 2014 | The BVSMWeb portal in the web framework in Cisco Unified Communications Domain Manager (CDM) in Unified CDM Application ... |
| CVE-2014-3113 | — | — | 5.2% | Jul 7, 2014 | Multiple buffer overflows in RealNetworks RealPlayer before 17.0.10.8 allow remote attackers to execute arbitrary code v... |
| CVE-2014-2969 | — | — | 1.5% | Jul 7, 2014 | NETGEAR GS108PE Prosafe Plus switches with firmware 1.2.0.5 have a hardcoded password of debugpassword for the ntgruser ... |
| CVE-2014-2967 | — | — | 5.1% | Jul 7, 2014 | Autodesk VRED Professional 2014 before SR1 SP8 allows remote attackers to execute arbitrary code via Python os library c... |
| CVE-2014-2617 | — | — | 12.2% | Jul 7, 2014 | Unspecified vulnerability in HP Universal CMDB 10.01 and 10.10 allows remote attackers to execute arbitrary code or obta... |
| CVE-2014-2616 | — | — | 8.1% | Jul 7, 2014 | Unspecified vulnerability in HP Universal CMDB 10.01 and 10.10 allows remote attackers to execute arbitrary code or obta... |
| CVE-2014-2615 | — | — | 8.1% | Jul 7, 2014 | Unspecified vulnerability in HP Universal CMDB 10.01 and 10.10 allows remote attackers to execute arbitrary code or obta... |
| CVE-2014-2614 | — | — | 4.9% | Jul 7, 2014 | Unspecified vulnerability in HP SiteScope 11.1x through 11.13 and 11.2x through 11.24 allows remote attackers to bypass ... |
| CVE-2014-2198 | — | — | 3.6% | Jul 7, 2014 | Cisco Unified Communications Domain Manager (CDM) in Unified CDM Platform Software before 4.4.2 has a hardcoded SSH priv... |
| CVE-2014-2197 | — | — | 2.9% | Jul 7, 2014 | The Administration GUI in the web framework in Cisco Unified Communications Domain Manager (CDM) in Unified CDM Applicat... |
| CVE-2014-0894 | — | — | 4.0% | Jul 7, 2014 | RICOS in IBM Algo Credit Limits (aka ACLM) 4.5.0 through 4.7.0 before 4.7.0.03 FP5 in IBM Algorithmics allows context-de... |
| CVE-2014-0875 | — | — | 1.3% | Jul 7, 2014 | Active Cloud Engine (ACE) in IBM Storwize V7000 Unified 1.3.0.0 through 1.4.3.x allows remote attackers to bypass intend... |
| CVE-2014-0871 | — | — | 5.7% | Jul 7, 2014 | RICOS in IBM Algo Credit Limits (aka ACLM) 4.5.0 through 4.7.0 before 4.7.0.03 FP5 in IBM Algorithmics allows remote att... |
| CVE-2014-0870 | — | — | 3.7% | Jul 7, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in RICOS in IBM Algo Credit Limits (aka ACLM) 4.5.0 through 4.7.0 be... |
| CVE-2014-0869 | — | — | 5.5% | Jul 7, 2014 | The decrypt function in RICOS in IBM Algo Credit Limits (aka ACLM) 4.5.0 through 4.7.0 before 4.7.0.03 FP5 in IBM Algori... |
| CVE-2014-0868 | — | — | 4.3% | Jul 7, 2014 | RICOS in IBM Algo Credit Limits (aka ACLM) 4.5.0 through 4.7.0 before 4.7.0.03 FP5 in IBM Algorithmics relies on client-... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now