2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0995 | — | — | 9.7% | Nov 6, 2014 | The Standalone Enqueue Server in SAP Netweaver 7.20, 7.01, and earlier allows remote attackers to cause a denial of serv... |
| CVE-2014-2937 | — | — | — | Nov 6, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-3220. Reason: This candidate is a reservation ... |
| CVE-2014-8622 | — | — | 1.6% | Nov 5, 2014 | Cross-site scripting (XSS) vulnerability in compfight-search.php in the Compfight plugin 1.4 for WordPress allows remote... |
| CVE-2014-8549 | — | — | 2.4% | Nov 5, 2014 | libavcodec/on2avc.c in FFmpeg before 2.4.2 does not constrain the number of channels to at most 2, which allows remote a... |
| CVE-2014-8548 | — | — | 2.4% | Nov 5, 2014 | Off-by-one error in libavcodec/smc.c in FFmpeg before 2.4.2 allows remote attackers to cause a denial of service (out-of... |
| CVE-2014-8547 | — | — | 3.1% | Nov 5, 2014 | libavcodec/gifdec.c in FFmpeg before 2.4.2 does not properly compute image heights, which allows remote attackers to cau... |
| CVE-2014-8546 | — | — | 3.1% | Nov 5, 2014 | Integer underflow in libavcodec/cinepak.c in FFmpeg before 2.4.2 allows remote attackers to cause a denial of service (o... |
| CVE-2014-8545 | — | — | 3.1% | Nov 5, 2014 | libavcodec/pngdec.c in FFmpeg before 2.4.2 accepts the monochrome-black format without verifying that the bits-per-pixel... |
| CVE-2014-8544 | — | — | 3.1% | Nov 5, 2014 | libavcodec/tiff.c in FFmpeg before 2.4.2 does not properly validate bits-per-pixel fields, which allows remote attackers... |
| CVE-2014-8543 | — | — | 3.1% | Nov 5, 2014 | libavcodec/mmvideo.c in FFmpeg before 2.4.2 does not consider all lines of HHV Intra blocks during validation of image h... |
| CVE-2014-8542 | — | — | 2.5% | Nov 5, 2014 | libavcodec/utils.c in FFmpeg before 2.4.2 omits a certain codec ID during enforcement of alignment, which allows remote ... |
| CVE-2014-8541 | — | — | 2.4% | Nov 5, 2014 | libavcodec/mjpegdec.c in FFmpeg before 2.4.2 considers only dimension differences, and not bits-per-pixel differences, w... |
| CVE-2014-8326 | — | — | 1.5% | Nov 5, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 4.0.x before 4.0.10.5, 4.1.x before 4.1.14.6, and 4.2.... |
| CVE-2014-5417 | — | — | 1.8% | Nov 5, 2014 | Cross-site scripting (XSS) vulnerability in Meinberg NTP Server firmware on LANTIME M-Series devices 6.15.019 and earlie... |
| CVE-2014-5408 | — | — | 1.7% | Nov 5, 2014 | Cross-site scripting (XSS) vulnerability in the login script in the Wind Farm Portal on Nordex Control 2 (NC2) SCADA dev... |
| CVE-2014-4834 | — | — | 1.3% | Nov 5, 2014 | IBM WebSphere Commerce 6.x through 6.0.0.11 and 7.x through 7.0.0.8 does not properly detect recursion during entity exp... |
| CVE-2014-4810 | — | — | 1.1% | Nov 5, 2014 | IBM Cognos Mobile 10.1.1 before FP3 IF1, 10.2.0 before FP2 IF1, and 10.2.1 before FP4 IF1 preserves a session between th... |
| CVE-2014-4769 | — | — | 1.2% | Nov 5, 2014 | IBM WebSphere Commerce 6.x through 6.0.0.11 and 7.x through 7.0.0.8 allows remote authenticated users to read arbitrary ... |
| CVE-2014-3710 | — | — | 13.8% | Nov 5, 2014 | The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure ... |
| CVE-2014-2374 | — | — | 1.9% | Nov 5, 2014 | The AXN-NET Ethernet module accessory 3.04 for the Accuenergy Acuvim II allows remote attackers to discover passwords an... |
| CVE-2014-2373 | — | — | 1.8% | Nov 5, 2014 | The AXN-NET Ethernet module accessory 3.04 for the Accuenergy Acuvim II allows remote attackers to discover passwords an... |
| CVE-2014-6033 | — | — | — | Nov 5, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-6032. Reason: This candidate is a duplicate of C... |
| CVE-2014-2718 | — | — | 1.1% | Nov 4, 2014 | ASUS RT-AC68U, RT-AC66R, RT-AC66U, RT-AC56R, RT-AC56U, RT-N66R, RT-N66U, RT-N56R, RT-N56U, and possibly other RT-series ... |
| CVE-2014-3461 | — | — | 2.7% | Nov 4, 2014 | hw/usb/bus.c in QEMU 1.6.2 allows remote attackers to execute arbitrary code via crafted savevm data, which triggers a h... |
| CVE-2014-0223 | — | — | 0.6% | Nov 4, 2014 | Integer overflow in the qcow_open function in block/qcow.c in QEMU before 1.7.2 allows local users to cause a denial of ... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now