2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-4899 | — | — | 0.3% | Oct 21, 2014 | The Indian Cement Review (aka com.magzter.indiancementreview) application 3.01 for Android does not verify X.509 certifi... |
| CVE-2014-4898 | — | — | 0.3% | Oct 21, 2014 | The Harivijay (aka com.upasanhar.marathi.harivijay) application 4.0 for Android does not verify X.509 certificates from ... |
| CVE-2014-4897 | — | — | 0.3% | Oct 21, 2014 | The Touriosity Travelmag (aka com.magzter.touriositytravelmag) application 3.1 for Android does not verify X.509 certifi... |
| CVE-2014-4896 | — | — | 0.3% | Oct 21, 2014 | The Parque Imperial (aka com.a792139893520606f84b2188a.a23428594a) application 1.02 for Android does not verify X.509 ce... |
| CVE-2014-4895 | — | — | 0.3% | Oct 21, 2014 | The Herpin Time Radio (aka com.herpin.time.radio) application 2.0 for Android does not verify X.509 certificates from SS... |
| CVE-2014-4894 | — | — | 0.3% | Oct 21, 2014 | The MyMetro (aka com.myrippleapps.mymetro) application 2.4.7 for Android does not verify X.509 certificates from SSL ser... |
| CVE-2014-4892 | — | — | 0.3% | Oct 21, 2014 | The uControl Smart Home Automation (aka de.ucontrol) application 1.2 for Android does not verify X.509 certificates from... |
| CVE-2014-4891 | — | — | 0.3% | Oct 21, 2014 | The CT iHub (aka com.concursive.ctihub) application 1 for Android does not verify X.509 certificates from SSL servers, w... |
| CVE-2014-4890 | — | — | 0.3% | Oct 21, 2014 | The Nano Digest (aka com.magzter.nanodigest) application 3.0 for Android does not verify X.509 certificates from SSL ser... |
| CVE-2014-4889 | — | — | 0.3% | Oct 21, 2014 | The Diabetic Diet Guide (aka com.wDiabeticDietGuide) application 2.1 for Android does not verify X.509 certificates from... |
| CVE-2014-4888 | — | — | 0.3% | Oct 21, 2014 | The BattleFriends at Sea GOLD (aka com.tequilamobile.warshipslivegold) application 1.1.0 for Android does not verify X.5... |
| CVE-2014-4887 | — | — | 0.3% | Oct 21, 2014 | The Joint Radio Blues (aka com.nobexinc.wls_69685189.rc) application 3.2.3 for Android does not verify X.509 certificate... |
| CVE-2014-4885 | — | — | 0.3% | Oct 21, 2014 | The CPWORLD Close Protection World (aka com.tapatalk.closeprotectionworldcom) application 3.4.4 for Android does not ver... |
| CVE-2014-4884 | — | — | 0.3% | Oct 21, 2014 | The Conrad Hotel (aka com.wConradHotel) application 0.1 for Android does not verify X.509 certificates from SSL servers,... |
| CVE-2014-8366 | — | — | 2.1% | Oct 20, 2014 | SQL injection vulnerability in openSIS 4.5 through 5.3 allows remote attackers to execute arbitrary SQL commands via the... |
| CVE-2014-8365 | — | — | 1.4% | Oct 20, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in Xornic Contact Us allow remote attackers to inject arbitrary web ... |
| CVE-2014-3863 | — | — | 1.9% | Oct 20, 2014 | Cross-site scripting (XSS) vulnerability in the JChatSocial component before 2.3 for Joomla! allows remote attackers to ... |
| CVE-2014-8364 | — | — | 1.6% | Oct 20, 2014 | Cross-site scripting (XSS) vulnerability in ss_handler.php in the WordPress Spreadsheet (wpSS) plugin 0.62 for WordPress... |
| CVE-2014-8363 | — | — | 2.1% | Oct 20, 2014 | SQL injection vulnerability in ss_handler.php in the WordPress Spreadsheet (wpSS) plugin 0.62 for WordPress allows remot... |
| CVE-2014-5169 | — | — | 1.4% | Oct 20, 2014 | Cross-site scripting (XSS) vulnerability in the Date module before 7.x-2.8 for Drupal allows remote authenticated users ... |
| CVE-2014-5026 | — | — | 1.9% | Oct 20, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in Cacti 0.8.8b allow remote authenticated users with console access... |
| CVE-2014-5025 | — | — | 1.8% | Oct 20, 2014 | Cross-site scripting (XSS) vulnerability in data_sources.php in Cacti 0.8.8b allows remote authenticated users with cons... |
| CVE-2014-3564 | — | — | 4.3% | Oct 20, 2014 | Multiple heap-based buffer overflows in the status_handler function in (1) engine-gpgsm.c and (2) engine-uiserver.c in G... |
| CVE-2014-8331 | — | — | 0.5% | Oct 20, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in Huawei HiLink E3236 before E3276sTCPU-V200R002B470D13SP00C... |
| CVE-2014-8330 | — | — | 0.8% | Oct 20, 2014 | Cross-site scripting (XSS) vulnerability in EspoCRM allows remote authenticated users to inject arbitrary web script or ... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now