2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-5286 | — | — | 1.4% | Feb 19, 2015 | The ActiveMatrix Policy Manager Authentication module in TIBCO ActiveMatrix Policy Agent 3.x before 3.1.2, ActiveMatrix ... |
| CVE-2014-9466 | — | — | 2.1% | Feb 17, 2015 | Open-Xchange (OX) AppSuite and Server before 7.4.2-rev42, 7.6.0 before 7.6.0-rev36, and 7.6.1 before 7.6.1-rev14 does no... |
| CVE-2014-8757 | — | — | 4.5% | Feb 17, 2015 | LG On-Screen Phone (OSP) before 4.3.010 allows remote attackers to bypass authorization via a crafted request. |
| CVE-2014-8023 | — | — | 1.8% | Feb 17, 2015 | Cisco Adaptive Security Appliance (ASA) Software 9.2(.3) and earlier, when challenge-response authentication is used, do... |
| CVE-2014-6194 | — | — | 1.4% | Feb 17, 2015 | Directory traversal vulnerability in an unspecified web form in IBM Maximo Asset Management 7.1 through 7.1.1.13 and 7.5... |
| CVE-2014-6102 | — | — | 0.5% | Feb 17, 2015 | IBM Maximo Asset Management 7.1 through 7.1.1.13 and 7.5.0 before 7.5.0.6 IFIX008, Maximo Asset Management 7.5.0 through... |
| CVE-2014-9375 | — | — | 3.2% | Feb 16, 2015 | Directory traversal vulnerability in the LibraryFileUploadServlet servlet in Lexmark Markvision Enterprise allows remote... |
| CVE-2014-6137 | — | — | 2.3% | Feb 16, 2015 | Cross-site scripting (XSS) vulnerability in the Relay Diagnostic page in IBM Tivoli Endpoint Manager 9.1 before 9.1.1229... |
| CVE-2014-6113 | — | — | 0.9% | Feb 16, 2015 | Cross-site scripting (XSS) vulnerability in the Web Reports component in IBM Tivoli Endpoint Manager 9.1 before 9.1.1229... |
| CVE-2014-0227 | — | — | 21.0% | Feb 16, 2015 | java/org/apache/coyote/http11/filters/ChunkedInputFilter.java in Apache Tomcat 6.x before 6.0.42, 7.x before 7.0.55, and... |
| CVE-2014-7883 | — | — | 37.0% | Feb 15, 2015 | HP Universal CMDB (UCMDB) Probe 9.05, 10.01, and 10.11 enables the HTTP TRACE method, which allows remote attackers to o... |
| CVE-2014-7196 | — | — | — | Feb 15, 2015 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-7169. Reason: This candidate is a duplicate of... |
| CVE-2014-8911 | — | — | 0.9% | Feb 14, 2015 | Cross-site scripting (XSS) vulnerability in IBM Content Navigator 2.0.0 and 2.0.1 before 2.0.1.2 FP002 IF003 and 2.0.3 b... |
| CVE-2014-6195 | — | — | 0.4% | Feb 14, 2015 | The (1) Java GUI and (2) Web GUI components in the IBM Tivoli Storage Manager (TSM) Backup-Archive client 5.4 and 5.5 be... |
| CVE-2014-4804 | — | — | 1.1% | Feb 14, 2015 | Curam Universal Access in IBM Curam Social Program Management 5.2 before SP6 EP6, 6.0 SP2 before EP26, 6.0.4.5 before iF... |
| CVE-2014-8122 | — | — | 2.1% | Feb 13, 2015 | Race condition in JBoss Weld before 2.2.8 and 3.x before 3.0.0 Alpha3 allows remote attackers to obtain information from... |
| CVE-2014-7853 | — | — | 1.2% | Feb 13, 2015 | The JBoss Application Server (WildFly) JacORB subsystem in Red Hat JBoss Enterprise Application Platform (EAP) before 6.... |
| CVE-2014-7849 | — | — | 1.3% | Feb 13, 2015 | The Role Based Access Control (RBAC) implementation in JBoss Enterprise Application Platform (EAP) 6.2.0 through 6.3.2 d... |
| CVE-2014-7827 | — | — | 1.7% | Feb 13, 2015 | The org.jboss.security.plugins.mapping.JBossMappingManager implementation in JBoss Security in Red Hat JBoss Enterprise ... |
| CVE-2014-0154 | — | — | 1.7% | Feb 13, 2015 | oVirt Engine before 3.5.0 does not include the HTTPOnly flag in a Set-Cookie header for the session IDs, which makes it ... |
| CVE-2014-0151 | — | — | 0.6% | Feb 13, 2015 | Cross-site request forgery (CSRF) vulnerability in oVirt Engine before 3.5.0 beta2 allows remote attackers to hijack the... |
| CVE-2014-8909 | — | — | 1.4% | Feb 13, 2015 | Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 C... |
| CVE-2014-8385 | — | — | 4.0% | Feb 13, 2015 | Buffer overflow on Advantech EKI-1200 gateways with firmware before 1.63 allows remote attackers to execute arbitrary co... |
| CVE-2014-6185 | — | — | 0.4% | Feb 13, 2015 | dsmtca in the client in IBM Tivoli Storage Manager (TSM) 6.3 before 6.3.2.3, 6.4 before 6.4.2.2, and 7.1 before 7.1.1.3 ... |
| CVE-2014-6154 | — | — | 3.5% | Feb 13, 2015 | Directory traversal vulnerability in IBM Optim Performance Manager for DB2 4.1.0.1 through 4.1.1 on Linux, UNIX, and Win... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now