2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0432 | — | — | 4.4% | Apr 16, 2014 | Unspecified vulnerability in Oracle Java SE 7u51 and 8, and Java SE Embedded 7u51, allows remote attackers to affect con... |
| CVE-2014-0429 | — | — | 7.5% | Apr 16, 2014 | Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded... |
| CVE-2014-0426 | — | — | 1.0% | Apr 16, 2014 | Unspecified vulnerability in the Oracle Containers for J2EE component in Oracle Fusion Middleware 10.1.3.5 allows remote... |
| CVE-2014-0421 | — | — | 0.4% | Apr 16, 2014 | Unspecified vulnerability in Oracle Solaris 10, when running on the SPARC64-X Platform, allows local users to affect con... |
| CVE-2014-0414 | — | — | 1.2% | Apr 16, 2014 | Unspecified vulnerability in the Oracle Containers for J2EE component in Oracle Fusion Middleware 10.1.3.5 allows remote... |
| CVE-2014-0413 | — | — | 1.0% | Apr 16, 2014 | Unspecified vulnerability in the Oracle Containers for J2EE component in Oracle Fusion Middleware 10.1.3.5 allows remote... |
| CVE-2014-0384 | — | — | 3.2% | Apr 16, 2014 | Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.35 and earlier and 5.6.15 and earlier allows... |
| CVE-2014-2858 | — | — | 3.0% | Apr 15, 2014 | Directory traversal vulnerability in the Resources plugin 1.0.0 before 1.2.6 for Pivotal Grails 2.0.0 through 2.3.6 allo... |
| CVE-2014-2857 | — | — | 1.4% | Apr 15, 2014 | The default configuration of the Resources plugin 1.0.0 before 1.2.6 for Pivotal Grails 2.0.0 through 2.3.6 does not pro... |
| CVE-2014-0053 | — | — | 2.0% | Apr 15, 2014 | The default configuration of the Resources plugin 1.0.0 before 1.2.6 for Pivotal Grails 2.0.0 before 2.3.6 does not prop... |
| CVE-2014-2874 | — | — | 5.1% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to execute arbitrary code via shell metac... |
| CVE-2014-2873 | — | — | 2.1% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 does not require authentication for access to log files, which al... |
| CVE-2014-2872 | — | — | 2.0% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to obtain potentially sensitive informati... |
| CVE-2014-2871 | — | — | 2.0% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 relies on an HTTP session for entering credentials on login pages... |
| CVE-2014-2870 | — | — | 1.5% | Apr 15, 2014 | The default configuration of PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 uses cleartext for storage of creden... |
| CVE-2014-2869 | — | — | 2.0% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to obtain sensitive information via reque... |
| CVE-2014-2868 | — | — | 3.3% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to modify the flow of execution of ColdFu... |
| CVE-2014-2867 | — | — | 4.9% | Apr 15, 2014 | Unrestricted file upload vulnerability in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers... |
| CVE-2014-2866 | — | — | 3.4% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 relies on client JavaScript code for access restrictions, which a... |
| CVE-2014-2865 | — | — | 2.4% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to bypass intended access restrictions vi... |
| CVE-2014-2864 | — | — | 5.1% | Apr 15, 2014 | Multiple directory traversal vulnerabilities in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allow remote atta... |
| CVE-2014-2863 | — | — | 4.1% | Apr 15, 2014 | Multiple absolute path traversal vulnerabilities in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allow remote ... |
| CVE-2014-2862 | — | — | 1.8% | Apr 15, 2014 | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 does not check authorization in unspecified situations, which all... |
| CVE-2014-2861 | — | — | 2.1% | Apr 15, 2014 | Incomplete blacklist vulnerability in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to ... |
| CVE-2014-2860 | — | — | 2.0% | Apr 15, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allow remo... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now