2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-4157 | — | — | 0.5% | Jun 23, 2014 | arch/mips/include/asm/thread_info.h in the Linux kernel before 3.14.8 on the MIPS platform does not configure _TIF_SECCO... |
| CVE-2014-4027 | — | — | 0.7% | Jun 23, 2014 | The rd_build_device_space function in drivers/target/target_core_rd.c in the Linux kernel before 3.14 does not properly ... |
| CVE-2014-4014 | — | — | 3.3% | Jun 23, 2014 | The capabilities implementation in the Linux kernel before 3.14.8 does not properly consider that namespaces are inappli... |
| CVE-2014-1739 | — | — | 1.1% | Jun 23, 2014 | The media_device_enum_entities function in drivers/media/media-device.c in the Linux kernel before 3.14.6 does not initi... |
| CVE-2014-0203 | MEDIUM | 5.5 | 0.5% | Jun 23, 2014 | The __do_follow_link function in fs/namei.c in the Linux kernel before 2.6.33 does not properly handle the last pathname... |
| CVE-2014-4338 | — | — | 3.0% | Jun 22, 2014 | cups-browsed in cups-filters before 1.0.53 allows remote attackers to bypass intended access restrictions in opportunist... |
| CVE-2014-4337 | — | — | 2.9% | Jun 22, 2014 | The process_browse_data function in utils/cups-browsed.c in cups-browsed in cups-filters before 1.0.53 allows remote att... |
| CVE-2014-4336 | — | — | 1.1% | Jun 22, 2014 | The generate_local_queue function in utils/cups-browsed.c in cups-browsed in cups-filters before 1.0.53 allows remote IP... |
| CVE-2014-4509 | — | — | 0.4% | Jun 21, 2014 | The MKDQUOTESAFE function in the Fan-out driver scripts in Fan-Out Platform Services in Novell Identity Manager (aka IDM... |
| CVE-2014-3883 | — | — | 1.3% | Jun 21, 2014 | Usermin before 1.600 allows remote attackers to execute arbitrary operating-system commands via unspecified vectors rela... |
| CVE-2014-3431 | — | — | 0.2% | Jun 21, 2014 | Symantec PGP Desktop 10.x, and Encryption Desktop Professional 10.3.x before 10.3.2 MP2, on OS X uses world-writable per... |
| CVE-2014-3296 | — | — | 1.3% | Jun 21, 2014 | The XML programmatic interface (XML PI) in Cisco WebEx Meeting Server 1.5(.1.131) and earlier allows remote authenticate... |
| CVE-2014-3073 | — | — | 4.2% | Jun 21, 2014 | Unspecified vulnerability in IBM Security Access Manager (ISAM) for Mobile 8.0 and IBM Security Access Manager for Web 7... |
| CVE-2014-3053 | — | — | 1.4% | Jun 21, 2014 | The Local Management Interface (LMI) in IBM Security Access Manager (ISAM) for Mobile 8.0 with firmware 8.0.0.0 through ... |
| CVE-2014-3052 | — | — | 0.4% | Jun 21, 2014 | The reverse-proxy feature in IBM Security Access Manager (ISAM) for Web 8.0 with firmware 8.0.0.2 and 8.0.0.3 interprets... |
| CVE-2014-4507 | — | — | 2.4% | Jun 20, 2014 | Directory traversal vulnerability in Smart-Proxy in Foreman before 1.4.5 and 1.5.x before 1.5.1 allows remote attackers ... |
| CVE-2014-4506 | — | — | 0.9% | Jun 20, 2014 | Cross-site scripting (XSS) vulnerability in the Custom Meta module 6.x-1.x before 6.x-1.2 and 7.x-1.x before 7.x-1.3 for... |
| CVE-2014-4505 | — | — | 1.2% | Jun 20, 2014 | Cross-site scripting (XSS) vulnerability in the Easy Breadcrumb module 7.x-2.x before 7.x-2.10 for Drupal allows remote ... |
| CVE-2014-3496 | — | — | 5.0% | Jun 20, 2014 | cartridge_repository.rb in OpenShift Origin and Enterprise 1.2.8 through 2.1.1 allows remote attackers to execute arbitr... |
| CVE-2014-0007 | — | — | 9.0% | Jun 20, 2014 | The Smart-Proxy in Foreman before 1.4.5 and 1.5.x before 1.5.1 allows remote attackers to execute arbitrary commands via... |
| CVE-2014-4335 | — | — | 1.4% | Jun 19, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in BarracudaDrive 6.7.2 allow remote attackers to inject arbitrary w... |
| CVE-2014-4334 | — | — | 15.2% | Jun 19, 2014 | Stack-based buffer overflow in Ubisoft Rayman Legends before 1.3.140380 allows remote attackers to execute arbitrary cod... |
| CVE-2014-4333 | — | — | 0.9% | Jun 19, 2014 | Cross-site request forgery (CSRF) vulnerability in administration/profiles.php in Dolphin 7.1.4 and earlier allows remot... |
| CVE-2014-4155 | — | — | 2.3% | Jun 19, 2014 | Cross-site request forgery (CSRF) vulnerability in the ZTE ZXV10 W300 router with firmware W300V1.0.0a_ZRD_LK allows rem... |
| CVE-2014-3810 | — | — | 1.7% | Jun 19, 2014 | SQL injection vulnerability in administration/profiles.php in BoonEx Dolphin 7.1.4 and earlier allows remote authenticat... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now