2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-8481 | — | — | 0.6% | Nov 10, 2014 | The instruction decoder in arch/x86/kvm/emulate.c in the KVM subsystem in the Linux kernel before 3.18-rc2 does not prop... |
| CVE-2014-8480 | — | — | 0.6% | Nov 10, 2014 | The instruction decoder in arch/x86/kvm/emulate.c in the KVM subsystem in the Linux kernel before 3.18-rc2 lacks intende... |
| CVE-2014-7207 | — | — | 0.4% | Nov 10, 2014 | A certain Debian patch to the IPv6 implementation in the Linux kernel 3.2.x through 3.2.63 does not properly validate ar... |
| CVE-2014-3645 | — | — | 0.4% | Nov 10, 2014 | arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel before 3.12 does not have an exit handler for the INVEPT ins... |
| CVE-2014-7819 | — | — | 3.9% | Nov 8, 2014 | Multiple directory traversal vulnerabilities in server.rb in Sprockets before 2.0.5, 2.1.x before 2.1.4, 2.2.x before 2.... |
| CVE-2014-7818 | — | — | 3.5% | Nov 8, 2014 | Directory traversal vulnerability in actionpack/lib/action_dispatch/middleware/static.rb in Action Pack in Ruby on Rails... |
| CVE-2014-6300 | — | — | 1.9% | Nov 8, 2014 | Cross-site scripting (XSS) vulnerability in the micro history implementation in phpMyAdmin 4.0.x before 4.0.10.3, 4.1.x ... |
| CVE-2014-6161 | — | — | 0.9% | Nov 8, 2014 | Cross-site scripting (XSS) vulnerability in IBM Tivoli Netcool/Impact 6.1.1 before 6.1.1.1-TIV-NCI-IF0001 allows remote ... |
| CVE-2014-6159 | — | — | 2.1% | Nov 8, 2014 | IBM DB2 9.7 before FP10, 9.8 through FP5, 10.1 through FT4, and 10.5 through FP4 on Linux, UNIX, and Windows, when immed... |
| CVE-2014-6146 | — | — | 0.3% | Nov 8, 2014 | IBM Sterling B2B Integrator 5.2.x through 5.2.4, when the Connect:Direct Server Adapter is configured, does not properly... |
| CVE-2014-6097 | — | — | 1.9% | Nov 8, 2014 | IBM DB2 9.7 before FP10 and 9.8 through FP5 on Linux, UNIX, and Windows allows remote authenticated users to cause a den... |
| CVE-2014-8580 | — | — | 1.5% | Nov 7, 2014 | Citrix NetScaler Application Delivery Controller and NetScaler Gateway 10.5.50.10 before 10.5-52.11, 10.1.122.17 before ... |
| CVE-2014-8510 | — | — | 1.5% | Nov 7, 2014 | The AdminUI in Trend Micro InterScan Web Security Virtual Appliance (IWSVA) before 6.0 HF build 1244 allows remote authe... |
| CVE-2014-6623 | — | — | 1.0% | Nov 7, 2014 | Cross-site request forgery (CSRF) vulnerability in the Insight module in Aruba Networks ClearPass before 6.3.6 and 6.4.x... |
| CVE-2014-6620 | — | — | 0.9% | Nov 7, 2014 | Cross-site scripting (XSS) vulnerability in Aruba Networks ClearPass before 6.3.6 and 6.4.x before 6.4.1 allows remote a... |
| CVE-2014-5038 | — | — | 0.4% | Nov 7, 2014 | Eucalyptus 3.0.0 through 4.0.1, when the log level is set to DEBUG or lower, logs user and system passwords, which allow... |
| CVE-2014-5037 | — | — | 0.3% | Nov 7, 2014 | Eucalyptus 4.0.0 through 4.0.1, when the log level is set to INFO, logs user and system passwords, which allows local us... |
| CVE-2014-3693 | — | — | 5.0% | Nov 7, 2014 | Use-after-free vulnerability in the socket manager of Impress Remote in LibreOffice 4.x before 4.2.7 and 4.3.x before 4.... |
| CVE-2014-3640 | — | — | 0.4% | Nov 7, 2014 | The sosendto function in slirp/udp.c in QEMU before 2.1.2 allows local users to cause a denial of service (NULL pointer ... |
| CVE-2014-8672 | — | — | 1.0% | Nov 7, 2014 | Cross-site scripting (XSS) vulnerability in the RewardingYourself application for Android and BlackBerry OS allows remot... |
| CVE-2014-8671 | — | — | 1.0% | Nov 7, 2014 | Cross-site scripting (XSS) vulnerability in the GWT Mobile PhoneGap Showcase application for Android allows remote attac... |
| CVE-2014-7990 | — | — | 0.3% | Nov 7, 2014 | Cisco IOS XE 3.5E and earlier on WS-C3850, WS-C3860, and AIR-CT5760 devices does not properly parse the "request system ... |
| CVE-2014-7989 | — | — | 0.3% | Nov 7, 2014 | Cisco Unified Computing System on B-Series blade servers allows local users to gain shell privileges via a crafted (1) p... |
| CVE-2014-7988 | — | — | 1.6% | Nov 7, 2014 | The Unified Messaging Service (UMS) in Cisco Unity Connection 10.5 and earlier allows remote authenticated users to obta... |
| CVE-2014-5430 | — | — | 0.4% | Nov 7, 2014 | Untrusted search path vulnerability in ABB RobotStudio 5.6x before 5.61.02 and Test Signal Viewer 1.5 allows local users... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now