2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

CVE IDSeverityCVSSDescription
CVE-2014-4157arch/mips/include/asm/thread_info.h in the Linux kernel before 3.14.8 on the MIPS platform does not configure _TIF_SECCO...
CVE-2014-4027The rd_build_device_space function in drivers/target/target_core_rd.c in the Linux kernel before 3.14 does not properly ...
CVE-2014-4014The capabilities implementation in the Linux kernel before 3.14.8 does not properly consider that namespaces are inappli...
CVE-2014-1739The media_device_enum_entities function in drivers/media/media-device.c in the Linux kernel before 3.14.6 does not initi...
CVE-2014-0203MEDIUM5.5The __do_follow_link function in fs/namei.c in the Linux kernel before 2.6.33 does not properly handle the last pathname...
CVE-2014-4338cups-browsed in cups-filters before 1.0.53 allows remote attackers to bypass intended access restrictions in opportunist...
CVE-2014-4337The process_browse_data function in utils/cups-browsed.c in cups-browsed in cups-filters before 1.0.53 allows remote att...
CVE-2014-4336The generate_local_queue function in utils/cups-browsed.c in cups-browsed in cups-filters before 1.0.53 allows remote IP...
CVE-2014-4509The MKDQUOTESAFE function in the Fan-out driver scripts in Fan-Out Platform Services in Novell Identity Manager (aka IDM...
CVE-2014-3883Usermin before 1.600 allows remote attackers to execute arbitrary operating-system commands via unspecified vectors rela...
CVE-2014-3431Symantec PGP Desktop 10.x, and Encryption Desktop Professional 10.3.x before 10.3.2 MP2, on OS X uses world-writable per...
CVE-2014-3296The XML programmatic interface (XML PI) in Cisco WebEx Meeting Server 1.5(.1.131) and earlier allows remote authenticate...
CVE-2014-3073Unspecified vulnerability in IBM Security Access Manager (ISAM) for Mobile 8.0 and IBM Security Access Manager for Web 7...
CVE-2014-3053The Local Management Interface (LMI) in IBM Security Access Manager (ISAM) for Mobile 8.0 with firmware 8.0.0.0 through ...
CVE-2014-3052The reverse-proxy feature in IBM Security Access Manager (ISAM) for Web 8.0 with firmware 8.0.0.2 and 8.0.0.3 interprets...
CVE-2014-4507Directory traversal vulnerability in Smart-Proxy in Foreman before 1.4.5 and 1.5.x before 1.5.1 allows remote attackers ...
CVE-2014-4506Cross-site scripting (XSS) vulnerability in the Custom Meta module 6.x-1.x before 6.x-1.2 and 7.x-1.x before 7.x-1.3 for...
CVE-2014-4505Cross-site scripting (XSS) vulnerability in the Easy Breadcrumb module 7.x-2.x before 7.x-2.10 for Drupal allows remote ...
CVE-2014-3496cartridge_repository.rb in OpenShift Origin and Enterprise 1.2.8 through 2.1.1 allows remote attackers to execute arbitr...
CVE-2014-0007The Smart-Proxy in Foreman before 1.4.5 and 1.5.x before 1.5.1 allows remote attackers to execute arbitrary commands via...
CVE-2014-4335Multiple cross-site scripting (XSS) vulnerabilities in BarracudaDrive 6.7.2 allow remote attackers to inject arbitrary w...
CVE-2014-4334Stack-based buffer overflow in Ubisoft Rayman Legends before 1.3.140380 allows remote attackers to execute arbitrary cod...
CVE-2014-4333Cross-site request forgery (CSRF) vulnerability in administration/profiles.php in Dolphin 7.1.4 and earlier allows remot...
CVE-2014-4155Cross-site request forgery (CSRF) vulnerability in the ZTE ZXV10 W300 router with firmware W300V1.0.0a_ZRD_LK allows rem...
CVE-2014-3810SQL injection vulnerability in administration/profiles.php in BoonEx Dolphin 7.1.4 and earlier allows remote authenticat...

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now