2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-2857 | — | — | 1.4% | Apr 15, 2014 | The default configuration of the Resources plugin 1.0.0 before 1.2.6 for Pivotal Grails 2.0.0 through 2.3.6 does not pro... |
| CVE-2014-0053 | — | — | 2.0% | Apr 15, 2014 | The default configuration of the Resources plugin 1.0.0 before 1.2.6 for Pivotal Grails 2.0.0 before 2.3.6 does not prop... |
| CVE-2014-2874 | — | — | 5.1% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to execute arbitrary code via shell metac... |
| CVE-2014-2873 | — | — | 2.1% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 does not require authentication for access to log files, which al... |
| CVE-2014-2872 | — | — | 2.0% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to obtain potentially sensitive informati... |
| CVE-2014-2871 | — | — | 2.0% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 relies on an HTTP session for entering credentials on login pages... |
| CVE-2014-2870 | — | — | 1.5% | Apr 15, 2014 | The default configuration of PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 uses cleartext for storage of creden... |
| CVE-2014-2869 | — | — | 2.0% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to obtain sensitive information via reque... |
| CVE-2014-2868 | — | — | 3.3% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to modify the flow of execution of ColdFu... |
| CVE-2014-2867 | — | — | 4.9% | Apr 15, 2014 | Unrestricted file upload vulnerability in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers... |
| CVE-2014-2866 | — | — | 3.4% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 relies on client JavaScript code for access restrictions, which a... |
| CVE-2014-2865 | — | — | 2.4% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to bypass intended access restrictions vi... |
| CVE-2014-2864 | — | — | 5.1% | Apr 15, 2014 | Multiple directory traversal vulnerabilities in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allow remote atta... |
| CVE-2014-2863 | — | — | 4.1% | Apr 15, 2014 | Multiple absolute path traversal vulnerabilities in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allow remote ... |
| CVE-2014-2862 | — | — | 1.8% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 does not check authorization in unspecified situations, which all... |
| CVE-2014-2861 | — | — | 2.1% | Apr 15, 2014 | Incomplete blacklist vulnerability in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to ... |
| CVE-2014-2860 | — | — | 2.0% | Apr 15, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allow remo... |
| CVE-2014-2859 | — | — | 2.4% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to bypass intended access restrictions vi... |
| CVE-2014-0924 | — | — | 1.1% | Apr 15, 2014 | IBM MessageSight 1.x before 1.1.0.0-IBM-IMA-IT01015 does not verify that all of the characters of a password are correct... |
| CVE-2014-0923 | — | — | 1.4% | Apr 15, 2014 | IBM MessageSight 1.x before 1.1.0.0-IBM-IMA-IT01015 allows remote attackers to cause a denial of service (daemon restart... |
| CVE-2014-0922 | — | — | 1.3% | Apr 15, 2014 | IBM MessageSight 1.x before 1.1.0.0-IBM-IMA-IT01015 allows remote attackers to cause a denial of service (resource consu... |
| CVE-2014-0921 | — | — | 1.3% | Apr 15, 2014 | The server in IBM MessageSight 1.x before 1.1.0.0-IBM-IMA-IT01015 allows remote attackers to cause a denial of service (... |
| CVE-2014-0642 | — | — | 1.0% | Apr 15, 2014 | EMC Documentum Content Server before 6.7 SP1 P26, 6.7 SP2 before P13, 7.0 before P13, and 7.1 before P02 allows remote a... |
| CVE-2014-2384 | — | — | 0.3% | Apr 15, 2014 | vmx86.sys in VMware Workstation 10.0.1 build 1379776 and VMware Player 6.0.1 build 1379776 on Windows might allow local ... |
| CVE-2014-1986 | — | — | 1.1% | Apr 15, 2014 | The Content Provider in the KOKUYO CamiApp application 1.21.1 and earlier for Android allows attackers to bypass intende... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now