2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-6345 | — | — | 30.2% | Nov 11, 2014 | Microsoft Internet Explorer 9 and 10 allows remote attackers to read content from a different (1) domain or (2) zone via... |
| CVE-2014-6344 | — | — | 15.5% | Nov 11, 2014 | Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a denial of service (memo... |
| CVE-2014-6343 | — | — | 15.5% | Nov 11, 2014 | Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2014-6342 | — | — | 15.5% | Nov 11, 2014 | Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory cor... |
| CVE-2014-6341 | — | — | 15.5% | Nov 11, 2014 | Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2014-6340 | — | — | 28.8% | Nov 11, 2014 | Microsoft Internet Explorer 6 through 11 allows remote attackers to read content from a different (1) domain or (2) zone... |
| CVE-2014-6339 | — | — | 11.9% | Nov 11, 2014 | Microsoft Internet Explorer 8 and 9 allows remote attackers to bypass the ASLR protection mechanism via a crafted web si... |
| CVE-2014-6337 | — | — | 15.5% | Nov 11, 2014 | Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (me... |
| CVE-2014-6335 | — | — | 16.0% | Nov 11, 2014 | Microsoft Word 2007 SP3, Word Viewer, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code... |
| CVE-2014-6334 | — | — | 17.2% | Nov 11, 2014 | Microsoft Word 2007 SP3, Word Viewer, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code... |
| CVE-2014-6333 | — | — | 17.9% | Nov 11, 2014 | Microsoft Word 2007 SP3, Word Viewer, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code... |
| CVE-2014-6331 | — | — | 20.3% | Nov 11, 2014 | Microsoft Active Directory Federation Services (AD FS) 2.0, 2.1, and 3.0, when a configured SAML Relying Party lacks a s... |
| CVE-2014-6323 | — | — | 13.6% | Nov 11, 2014 | Microsoft Internet Explorer 7 through 11 allows remote attackers to obtain sensitive clipboard information via a crafted... |
| CVE-2014-6322 | — | — | 13.0% | Nov 11, 2014 | The Windows Audio service in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, ... |
| CVE-2014-6321 | — | — | 96.0% | Nov 11, 2014 | Schannel in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Win... |
| CVE-2014-6318 | — | — | 11.4% | Nov 11, 2014 | The audit logon feature in Remote Desktop Protocol (RDP) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 ... |
| CVE-2014-6317 | — | — | 18.4% | Nov 11, 2014 | Array index error in win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Wind... |
| CVE-2014-4149 | — | — | 21.4% | Nov 11, 2014 | Microsoft .NET Framework 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, 4, 4.5, 4.5.1, and 4.5.2 does not properly perform TypeFilterLeve... |
| CVE-2014-4143 | — | — | 20.9% | Nov 11, 2014 | Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2014-4118 | — | — | 13.7% | Nov 11, 2014 | XML Core Services (aka MSXML) 3.0 in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R... |
| CVE-2014-4116 | — | — | 8.8% | Nov 11, 2014 | Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Foundation 2010 SP2 allows remote authenticated users t... |
| CVE-2014-4078 | — | — | 18.0% | Nov 11, 2014 | The IP Security feature in Microsoft Internet Information Services (IIS) 8.0 and 8.5 does not properly process wildcard ... |
| CVE-2014-4076 | — | — | 22.7% | Nov 11, 2014 | Microsoft Windows Server 2003 SP2 allows local users to gain privileges via a crafted IOCTL call to (1) tcpip.sys or (2)... |
| CVE-2014-8709 | — | — | 4.5% | Nov 10, 2014 | The ieee80211_fragment function in net/mac80211/tx.c in the Linux kernel before 3.13.5 does not properly maintain a cert... |
| CVE-2014-8652 | — | — | 2.7% | Nov 10, 2014 | Elipse E3 3.x and earlier allows remote attackers to cause a denial of service (application crash and plant outage) via ... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now