VYPR
High severity8.8NVD Advisory· Published Feb 6, 2018· Updated Jun 17, 2026

CVE-2014-5280

CVE-2014-5280

Description

boot2docker 1.2 and earlier allows attackers to conduct cross-site request forgery (CSRF) attacks by leveraging Docker daemons enabling TCP connections without TLS authentication.

Affected products

3
  • Boot2docker/Boot2dockerllm-fuzzy3 versions
    <=1.2+ 2 more
    • (no CPE)range: <=1.2
    • cpe:2.3:o:boot2docker:boot2docker:*:*:*:*:-:*:*:*range: <=1.2.0
    • (no CPE)range: <=1.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.

CVE-2014-5280 · High · VYPR