2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-8926 | — | — | 1.3% | May 25, 2015 | Common Inventory Technology (CIT) before 2.7.0.2050 in IBM License Metric Tool 7.2.2, 7.5, and 9; Endpoint Manger for So... |
| CVE-2014-6192 | — | — | 0.8% | May 25, 2015 | Cross-site scripting (XSS) vulnerability in IBM Curam Social Program Management 6.0 SP2 before EP26, 6.0.4 before 6.0.4.... |
| CVE-2014-6190 | — | — | 1.2% | May 25, 2015 | The log viewer in IBM Workload Deployer 3.1 before 3.1.0.7 allows remote attackers to obtain sensitive information via a... |
| CVE-2014-4778 | — | — | 1.0% | May 25, 2015 | IBM License Metric Tool 9 before 9.1.0.2 and Endpoint Manager for Software Use Analysis 9 before 9.1.0.2 do not send an ... |
| CVE-2014-4774 | — | — | 0.6% | May 25, 2015 | Cross-site request forgery (CSRF) vulnerability in the login page in IBM License Metric Tool 9 before 9.1.0.2 and Endpoi... |
| CVE-2014-2174 | — | — | 1.0% | May 25, 2015 | Cisco TelePresence T, TelePresence TE, and TelePresence TC before 7.1 do not properly implement access control, which al... |
| CVE-2014-8924 | — | — | 1.8% | May 20, 2015 | The server in IBM License Metric Tool 7.2.2 before IF15 and 7.5 before IF24 and Tivoli Asset Discovery for Distributed 7... |
| CVE-2014-4776 | — | — | 0.7% | May 20, 2015 | IBM License Metric Tool 9 before 9.1.0.2 does not have an off autocomplete attribute for authentication fields, which ma... |
| CVE-2014-6211 | — | — | 0.4% | May 20, 2015 | The command-line scripts in IBM WebSphere Commerce 6.0 through 6.0.0.11, 7.0 through 7.0.0.9, and 7.0 Feature Pack 2 thr... |
| CVE-2014-3685 | — | — | — | May 19, 2015 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2014-0194 | — | — | — | May 19, 2015 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2014-8384 | — | — | 3.2% | May 18, 2015 | The InFocus IN3128HD projector with firmware 0.26 does not restrict access to cgi-bin/webctrl.cgi.elf, which allows remo... |
| CVE-2014-8383 | — | — | 3.1% | May 18, 2015 | The InFocus IN3128HD projector with firmware 0.26 allows remote attackers to bypass authentication via a direct request ... |
| CVE-2014-9204 | — | — | 1.6% | May 17, 2015 | Stack-based buffer overflow in OPCTest.exe in Rockwell Automation RSLinx Classic before 3.73.00 allows remote attackers ... |
| CVE-2014-8162 | — | — | 2.7% | May 14, 2015 | XML external entity (XXE) in the RPC interface in Spacewalk and Red Hat Network (RHN) Satellite 5.7 and earlier allows r... |
| CVE-2014-1902 | — | — | 0.8% | May 14, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Y-Cam camera models SD range YCB003, YCK003, and YCW003; S range ... |
| CVE-2014-1901 | — | — | 1.3% | May 14, 2015 | Y-Cam camera models SD range YCB003, YCK003, and YCW003; S range YCB004, YCK004, YCW004; EyeBall YCEB03; Bullet VGA YCBL... |
| CVE-2014-1900 | — | — | 1.5% | May 14, 2015 | Y-Cam camera models SD range YCB003, YCK003, and YCW003; S range YCB004, YCK004, YCW004; EyeBall YCEB03; Bullet VGA YCBL... |
| CVE-2014-9160 | — | — | 10.7% | May 13, 2015 | Multiple heap-based buffer overflows in Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows ... |
| CVE-2014-9326 | — | — | 0.8% | May 12, 2015 | The automatic signature update functionality in the (1) Phone Home feature in F5 BIG-IP LTM, AAM, AFM, Analytics, APM, G... |
| CVE-2014-8619 | — | — | 1.4% | May 12, 2015 | Cross-site scripting (XSS) vulnerability in the autolearn configuration page in Fortinet FortiWeb 5.1.2 through 5.3.4 al... |
| CVE-2014-8618 | — | — | 1.4% | May 12, 2015 | Cross-site scripting (XSS) vulnerability in the theme login page in Fortinet FortiADC D models before 4.2 allows remote ... |
| CVE-2014-8616 | — | — | 1.8% | May 12, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Fortinet FortiOS 5.2.x before 5.2.3 allow remote attackers to inj... |
| CVE-2014-9716 | — | — | 2.2% | May 8, 2015 | Cross-site scripting (XSS) vulnerability in WebODF before 0.5.4 allows remote attackers to inject arbitrary web script o... |
| CVE-2014-0919 | — | — | 1.9% | May 8, 2015 | IBM DB2 9.5 through 10.5 on Linux, UNIX, and Windows stores passwords during the processing of certain SQL statements by... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now