U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2014-9504

Change History

Initial Analysis by NIST 2/27/2018 1:45:32 PM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:a:open_atrium_project:open_atrium:*:*:*:*:*:drupal:*:* versions from (including) 7.x-2.0 up to (excluding) 7.x-2.26
     *cpe:2.3:a:open_atrium_project:open_atrium:7.x-2.0:alpha1:*:*:*:drupal:*:*
     *cpe:2.3:a:open_atrium_project:open_atrium:7.x-2.0:alpha2:*:*:*:drupal:*:*
     *cpe:2.3:a:open_atrium_project:open_atrium:7.x-2.0:alpha3:*:*:*:drupal:*:*
     *cpe:2.3:a:open_atrium_project:open_atrium:7.x-2.0:alpha4:*:*:*:drupal:*:*
     *cpe:2.3:a:open_atrium_project:open_atrium:7.x-2.0:alpha5:*:*:*:drupal:*:*
     *cpe:2.3:a:open_atrium_project:open_atrium:7.x-2.0:beta1:*:*:*:drupal:*:*
     *cpe:2.3:a:open_atrium_project:open_atrium:7.x-2.0:beta2:*:*:*:drupal:*:*
     *cpe:2.3:a:open_atrium_project:open_atrium:7.x-2.0:beta3:*:*:*:drupal:*:*
     *cpe:2.3:a:open_atrium_project:open_atrium:7.x-2.0:beta4:*:*:*:drupal:*:*
     *cpe:2.3:a:open_atrium_project:open_atrium:7.x-2.0:rc1:*:*:*:drupal:*:*
Added CVSS V2

								
							
							
						
(AV:N/AC:L/Au:N/C:N/I:P/A:N)
Added CVSS V3

								
							
							
						
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Added CWE

								
							
							
						
CWE-284
Changed Reference Type
http://www.openwall.com/lists/oss-security/2015/01/04/6 No Types Assigned
http://www.openwall.com/lists/oss-security/2015/01/04/6 Issue Tracking, Mailing List
Changed Reference Type
https://exchange.xforce.ibmcloud.com/vulnerabilities/99657 No Types Assigned
https://exchange.xforce.ibmcloud.com/vulnerabilities/99657 Third Party Advisory, VDB Entry
Changed Reference Type
https://www.drupal.org/node/2394979 No Types Assigned
https://www.drupal.org/node/2394979 Mitigation, Vendor Advisory
Changed Reference Type
https://www.drupal.org/node/2395045 No Types Assigned
https://www.drupal.org/node/2395045 Patch, Vendor Advisory