2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2014-9469Cross-site scripting (XSS) vulnerability in vBulletin 3.5.4, 3.6.0, 3.6.7, 3.8.7, 4.2.2, 5.0.5, and 5.1.3.
CVE-2014-9312Unrestricted File Upload vulnerability in Photo Gallery 1.2.5.
CVE-2014-8900Cross-site request forgery (CSRF) vulnerability in IBM UrbanCode Release 6.0.1.6 and earlier, 6.1.0.7 and earlier, and 6...
CVE-2014-8871Directory traversal vulnerability in hybris Commerce software suite 5.0.3.3 and earlier, 5.0.0.3 and earlier, 5.0.4.4 an...
CVE-2014-8753Multiple cross-site scripting (XSS) vulnerabilities in Cit-e-Net Cit-e-Access 6.
CVE-2014-8428Privilege escalation vulnerability in Barracuda Load Balancer 5.0.0.015 via the use of an improperly protected SSH key.
CVE-2014-8426Hard coded weak credentials in Barracuda Load Balancer 5.0.0.015.
CVE-2014-8168Red Hat Satellite 6 allows local users to access mongod and delete pulp_database.
CVE-2014-5302Directory traversal vulnerability in ServiceDesk Plus and Plus MSP v5 through v9.0 v9030; AssetExplorer v4 to v6.1; Supp...
CVE-2014-5301Directory traversal vulnerability in ServiceDesk Plus MSP v5 to v9.0 v9030; AssetExplorer v4 to v6.1; SupportCenter v5 t...
CVE-2014-4925Cross-site scripting (XSS) vulnerability in Good for Enterprise for Android 2.8.0.398 and 1.9.0.40.
CVE-2014-0141Cross-site scripting (XSS) vulnerability in Red Hat Satellite 6.0.3.
CVE-2014-9637GNU patch 2.7.2 and earlier allows remote attackers to cause a denial of service (memory consumption and segmentation fa...
CVE-2014-9564CRLF injection vulnerability in IBM Flex System EN6131 40Gb Ethernet and IB6131 40Gb Infiniband Switch firmware before 3...
CVE-2014-7860The web/web_file/fb_publish.php script in D-Link DNS-320L before 1.04b12 and DNS-327L before 1.03b04 Build0119 does not ...
CVE-2014-7859Stack-based buffer overflow in login_mgr.cgi in D-Link firmware DNR-320L and DNS-320LW before 1.04b08, DNR-322L before 2...
CVE-2014-7858The check_login function in D-Link DNR-326 before 2.10 build 03 allows remote attackers to bypass authentication and log...
CVE-2014-7857D-Link DNS-320L firmware before 1.04b12, DNS-327L before 1.03b04 Build0119, DNR-326 1.40b03, DNS-320B 1.02b01, DNS-345 1...
CVE-2014-6189Cross-site scripting (XSS) vulnerability in IBM Security Network Protection 3100, 4100, 5100, and 7100 devices with firm...
CVE-2014-9981In all Qualcomm products with Android releases from CAF using the Linux kernel, an overflow check in the USB interface w...
CVE-2014-9980In all Qualcomm products with Android releases from CAF using the Linux kernel, a Sample App failed to check a length po...
CVE-2014-9979In all Qualcomm products with Android releases from CAF using the Linux kernel, a variable is uninitialized in a TrustZo...
CVE-2014-9978In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists i...
CVE-2014-9977In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists i...
CVE-2014-9976In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists i...

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now