2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-8580 | — | — | 1.5% | Nov 7, 2014 | Citrix NetScaler Application Delivery Controller and NetScaler Gateway 10.5.50.10 before 10.5-52.11, 10.1.122.17 before ... |
| CVE-2014-8510 | — | — | 1.5% | Nov 7, 2014 | The AdminUI in Trend Micro InterScan Web Security Virtual Appliance (IWSVA) before 6.0 HF build 1244 allows remote authe... |
| CVE-2014-6623 | — | — | 1.0% | Nov 7, 2014 | Cross-site request forgery (CSRF) vulnerability in the Insight module in Aruba Networks ClearPass before 6.3.6 and 6.4.x... |
| CVE-2014-6620 | — | — | 0.9% | Nov 7, 2014 | Cross-site scripting (XSS) vulnerability in Aruba Networks ClearPass before 6.3.6 and 6.4.x before 6.4.1 allows remote a... |
| CVE-2014-5038 | — | — | 0.4% | Nov 7, 2014 | Eucalyptus 3.0.0 through 4.0.1, when the log level is set to DEBUG or lower, logs user and system passwords, which allow... |
| CVE-2014-5037 | — | — | 0.3% | Nov 7, 2014 | Eucalyptus 4.0.0 through 4.0.1, when the log level is set to INFO, logs user and system passwords, which allows local us... |
| CVE-2014-3693 | — | — | 5.0% | Nov 7, 2014 | Use-after-free vulnerability in the socket manager of Impress Remote in LibreOffice 4.x before 4.2.7 and 4.3.x before 4.... |
| CVE-2014-3640 | — | — | 0.4% | Nov 7, 2014 | The sosendto function in slirp/udp.c in QEMU before 2.1.2 allows local users to cause a denial of service (NULL pointer ... |
| CVE-2014-8672 | — | — | 1.0% | Nov 7, 2014 | Cross-site scripting (XSS) vulnerability in the RewardingYourself application for Android and BlackBerry OS allows remot... |
| CVE-2014-8671 | — | — | 1.0% | Nov 7, 2014 | Cross-site scripting (XSS) vulnerability in the GWT Mobile PhoneGap Showcase application for Android allows remote attac... |
| CVE-2014-7990 | — | — | 0.3% | Nov 7, 2014 | Cisco IOS XE 3.5E and earlier on WS-C3850, WS-C3860, and AIR-CT5760 devices does not properly parse the "request system ... |
| CVE-2014-7989 | — | — | 0.3% | Nov 7, 2014 | Cisco Unified Computing System on B-Series blade servers allows local users to gain shell privileges via a crafted (1) p... |
| CVE-2014-7988 | — | — | 1.6% | Nov 7, 2014 | The Unified Messaging Service (UMS) in Cisco Unity Connection 10.5 and earlier allows remote authenticated users to obta... |
| CVE-2014-5430 | — | — | 0.4% | Nov 7, 2014 | Untrusted search path vulnerability in ABB RobotStudio 5.6x before 5.61.02 and Test Signal Viewer 1.5 allows local users... |
| CVE-2014-4627 | HIGH | 8.8 | 2.3% | Nov 7, 2014 | SQL injection vulnerability in EMC RSA Web Threat Detection 4.x before 4.6.1.1 allows remote authenticated users to exec... |
| CVE-2014-3439 | — | — | 5.8% | Nov 7, 2014 | ConsoleServlet in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU5 allows remote attackers to write to arbitr... |
| CVE-2014-3438 | — | — | 3.9% | Nov 7, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in console interface scripts in Symantec Endpoint Protection Manager... |
| CVE-2014-3437 | — | — | 8.5% | Nov 7, 2014 | The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU5 allows remote attackers to read ar... |
| CVE-2014-2179 | — | — | 1.6% | Nov 7, 2014 | The Cisco RV router firmware on RV220W devices, before 1.0.5.9 on RV120W devices, and before 1.0.4.14 on RV180 and RV180... |
| CVE-2014-2178 | — | — | 1.2% | Nov 7, 2014 | Cross-site request forgery (CSRF) vulnerability in the administrative web interface in the Cisco RV router firmware on R... |
| CVE-2014-2177 | — | — | 2.6% | Nov 7, 2014 | The network-diagnostics administration interface in the Cisco RV router firmware on RV220W devices, before 1.0.5.9 on RV... |
| CVE-2014-6030 | — | — | 1.7% | Nov 6, 2014 | Multiple SQL injection vulnerabilities in ClassApps SelectSurvey.NET before 4.125.002 allow (1) remote attackers to exec... |
| CVE-2014-5451 | — | — | 1.9% | Nov 6, 2014 | Cross-site scripting (XSS) vulnerability in manager/templates/default/header.tpl in MODX Revolution 2.3.1-pl and earlier... |
| CVE-2014-5258 | — | — | 19.8% | Nov 6, 2014 | Directory traversal vulnerability in showTempFile.php in webEdition CMS before 6.3.9.0 Beta allows remote authenticated ... |
| CVE-2014-8670 | — | — | 2.0% | Nov 6, 2014 | Open redirect vulnerability in go.php in vBulletin 4.2.1 allows remote attackers to redirect users to arbitrary web site... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now