2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-6914 | — | — | 0.3% | Oct 4, 2014 | The Houcine El Jasmi (aka com.devkhr31.houcineeljasmi) application 1.0 for Android does not verify X.509 certificates fr... |
| CVE-2014-6913 | — | — | 0.3% | Oct 4, 2014 | The Dive The World (aka com.paperton.wl.divetheworld) application 1.53 for Android does not verify X.509 certificates fr... |
| CVE-2014-6912 | — | — | 0.3% | Oct 4, 2014 | The IRA's 59th Annual Conference (aka com.coreapps.android.followme.ira_14) application 6.0.7.6 for Android does not ver... |
| CVE-2014-6911 | — | — | 0.3% | Oct 4, 2014 | The diziturky HD 2015 (aka com.adv.diziturky) application 2014 for Android does not verify X.509 certificates from SSL s... |
| CVE-2014-6910 | — | — | 0.3% | Oct 4, 2014 | The MemorizeIt! (aka com.kshinenterprises.kshinent.memorizeit) application 1.7.2 for Android does not verify X.509 certi... |
| CVE-2014-6909 | — | — | 0.3% | Oct 4, 2014 | The Coca-Cola FM Peru (aka com.enyetech.radio.coca_cola.fm_pe) application 2.0.41716 for Android does not verify X.509 c... |
| CVE-2014-6908 | — | — | 0.3% | Oct 4, 2014 | The Forum IC (aka com.tapatalk.forumimmigrercom) application 3.3.12 for Android does not verify X.509 certificates from ... |
| CVE-2014-6907 | — | — | 0.3% | Oct 4, 2014 | The Rakuten Install (aka co.jp.rakuten.installapp) application 1.5.0 for Android does not verify X.509 certificates from... |
| CVE-2014-6906 | — | — | 0.3% | Oct 4, 2014 | The Loli Chocolate Cake (aka com.alison.kang.chocolatecake) application 1.0.0 for Android does not verify X.509 certific... |
| CVE-2014-7227 | — | — | — | Oct 3, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-71... |
| CVE-2014-5410 | — | — | 4.2% | Oct 3, 2014 | The DNP3 feature on Rockwell Automation Allen-Bradley MicroLogix 1400 1766-Lxxxxx A FRN controllers 7 and earlier and 14... |
| CVE-2014-0754 | — | — | 9.0% | Oct 3, 2014 | Directory traversal vulnerability in SchneiderWEB on Schneider Electric Modicon PLC Ethernet modules 140CPU65x Exec befo... |
| CVE-2014-6299 | — | — | 0.6% | Oct 3, 2014 | Cross-site request forgery (CSRF) vulnerability in the mm_forum extension before 1.9.3 for TYPO3 allows remote attackers... |
| CVE-2014-6298 | — | — | 2.3% | Oct 3, 2014 | Unrestricted file upload vulnerability in the mm_forum extension before 1.9.3 for TYPO3 allows remote attackers to execu... |
| CVE-2014-6297 | — | — | 0.9% | Oct 3, 2014 | Cross-site scripting (XSS) vulnerability in the mm_forum extension before 1.9.3 for TYPO3 allows remote attackers to inj... |
| CVE-2014-6296 | — | — | 0.9% | Oct 3, 2014 | Cross-site scripting (XSS) vulnerability in the WEC Map (wec_map) extension before 3.0.3 for TYPO3 allows remote attacke... |
| CVE-2014-6295 | — | — | 1.2% | Oct 3, 2014 | SQL injection vulnerability in the WEC Map (wec_map) extension before 3.0.3 for TYPO3 allows remote attackers to execute... |
| CVE-2014-6294 | — | — | 0.9% | Oct 3, 2014 | Cross-site scripting (XSS) vulnerability in the External links click statistics (outstats) extension 0.0.3 and earlier f... |
| CVE-2014-6293 | — | — | 1.7% | Oct 3, 2014 | SQL injection vulnerability in the Statistics (ke_stats) extension before 1.1.2 for TYPO3 allows remote attackers to exe... |
| CVE-2014-6292 | — | — | 1.3% | Oct 3, 2014 | The femanager extension before 1.0.9 for TYPO3 allows remote frontend users to modify or delete the records of other fro... |
| CVE-2014-6291 | — | — | 1.1% | Oct 3, 2014 | Cross-site scripting (XSS) vulnerability in the Alphabetic Sitemap (alpha_sitemap) extension 0.0.3 and earlier for TYPO3... |
| CVE-2014-6290 | — | — | 1.3% | Oct 3, 2014 | The News (tt_news) extension before 3.5.2 for TYPO3 allows remote attackers to have unspecified impact via vectors relat... |
| CVE-2014-6289 | — | — | 1.5% | Oct 3, 2014 | The Ajax dispatcher for Extbase in the Yet Another Gallery (yag) extension before 3.0.1 and Tools for Extbase developmen... |
| CVE-2014-6288 | — | — | 1.9% | Oct 3, 2014 | The powermail extension 2.x before 2.0.11 for TYPO3 allows remote attackers to bypass the CAPTCHA protection mechanism v... |
| CVE-2014-3947 | — | — | 2.3% | Oct 3, 2014 | Unrestricted file upload vulnerability in the powermail extension before 1.6.11 and 2.x before 2.0.14 for TYPO3 allows r... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now