2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-9438 | — | — | 1.1% | Jan 2, 2015 | Cross-site request forgery (CSRF) vulnerability in the Moderator Control Panel in vBulletin 4.2.2 allows remote attacker... |
| CVE-2014-9437 | — | — | 1.0% | Jan 2, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Sliding Social Icons plugin 1.61 for WordPress allow r... |
| CVE-2014-9436 | — | — | 6.9% | Jan 2, 2015 | Absolute path traversal vulnerability in SysAid On-Premise before 14.4.2 allows remote attackers to read arbitrary files... |
| CVE-2014-9435 | — | — | 1.1% | Jan 2, 2015 | Multiple SQL injection vulnerabilities in Absolut Engine 1.73 allow remote authenticated users to execute arbitrary SQL ... |
| CVE-2014-9434 | — | — | 1.6% | Jan 2, 2015 | Cross-site scripting (XSS) vulnerability in admin/managerrelated.php in the administrative backend in Absolut Engine 1.7... |
| CVE-2014-9433 | — | — | 2.1% | Dec 31, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in cms/front_content.php in Contenido before 4.9.6, when advanced mo... |
| CVE-2014-9432 | — | — | 2.1% | Dec 31, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in templates/2k11/admin/overview.inc.tpl in Serendipity before 2.0-r... |
| CVE-2014-9431 | — | — | 0.9% | Dec 31, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in Smoothwall Express 3.1 and 3.0 SP3 allow remote attackers ... |
| CVE-2014-9430 | — | — | 1.4% | Dec 31, 2014 | Cross-site scripting (XSS) vulnerability in httpd/cgi-bin/vpn.cgi/vpnconfig.dat in Smoothwall Express 3.0 SP3 allows rem... |
| CVE-2014-9429 | — | — | 1.4% | Dec 31, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in Smoothwall Express 3.1 and 3.0 SP3 allow remote attackers to inje... |
| CVE-2014-9119 | — | — | 16.1% | Dec 31, 2014 | Directory traversal vulnerability in download.php in the DB Backup plugin 4.5 and earlier for Wordpress allows remote at... |
| CVE-2014-8145 | — | — | 7.7% | Dec 31, 2014 | Multiple heap-based buffer overflows in Sound eXchange (SoX) 14.4.1 and earlier allow remote attackers to have unspecifi... |
| CVE-2014-8144 | — | — | 0.7% | Dec 31, 2014 | Cross-site request forgery (CSRF) vulnerability in doorkeeper before 1.4.1 allows remote attackers to hijack the authent... |
| CVE-2014-9401 | — | — | 1.0% | Dec 31, 2014 | Cross-site request forgery (CSRF) vulnerability in the WP Limit Posts Automatically plugin 0.7 and earlier for WordPress... |
| CVE-2014-9400 | — | — | 1.0% | Dec 31, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Wp Unique Article Header Image plugin 1.0 and earlier ... |
| CVE-2014-9399 | — | — | 1.0% | Dec 31, 2014 | Cross-site request forgery (CSRF) vulnerability in the TweetScribe plugin 1.1 and earlier for WordPress allows remote at... |
| CVE-2014-9398 | — | — | 1.0% | Dec 31, 2014 | Cross-site request forgery (CSRF) vulnerability in the Twitter LiveBlog plugin 1.1.2 and earlier for WordPress allows re... |
| CVE-2014-9397 | — | — | 1.0% | Dec 31, 2014 | Cross-site request forgery (CSRF) vulnerability in the twimp-wp plugin for WordPress allows remote attackers to hijack t... |
| CVE-2014-9396 | — | — | 1.0% | Dec 31, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in the SimpleFlickr plugin 3.0.3 and earlier for WordPress al... |
| CVE-2014-9395 | — | — | 1.0% | Dec 31, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Simplelife plugin 1.2 and earlier for WordPress allow ... |
| CVE-2014-9394 | — | — | 1.0% | Dec 31, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in the PWGRandom plugin 1.11 and earlier for WordPress allow ... |
| CVE-2014-9393 | — | — | 1.0% | Dec 31, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Post to Twitter plugin 0.7 and earlier for WordPress a... |
| CVE-2014-9392 | — | — | 1.0% | Dec 31, 2014 | Cross-site request forgery (CSRF) vulnerability in the PictoBrowser (pictobrowser-gallery) plugin 0.3.1 and earlier for ... |
| CVE-2014-9391 | — | — | 1.0% | Dec 31, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in the gSlideShow plugin 0.1 and earlier for WordPress allow ... |
| CVE-2014-9367 | — | — | 1.9% | Dec 31, 2014 | Incomplete blacklist vulnerability in the urlEncode function in lib/TWiki.pm in TWiki 6.0.0 and 6.0.1 allows remote atta... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now