2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

CVE IDSeverityCVSSDescription
CVE-2014-8308Cross-site scripting (XSS) vulnerability in the Send to Inbox functionality in SAP BusinessObjects BI EDGE 4.0 allows re...
CVE-2014-8307Multiple cross-site scripting (XSS) vulnerabilities in skins/default/outline.tpl in C97net Cart Engine before 4.0 allow ...
CVE-2014-8306SQL injection vulnerability in the sql_query function in cart.php in C97net Cart Engine before 4.0 allows remote attacke...
CVE-2014-8305Open redirect vulnerability in the redir function in includes/function.php in C97net Cart Engine before 4.0 allows remot...
CVE-2014-8304Cross-site scripting (XSS) vulnerability in In-Portal CMS 5.2.0 and earlier allows remote attackers to inject arbitrary ...
CVE-2014-8303Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk Enterprise 6.1.x before 6.1.4 and 6.0.x before 6.0.6 al...
CVE-2014-8302Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk Enterprise 6.1.x before 6.1.4, 6.0.x before 6.0.6, and ...
CVE-2014-8301Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk Enterprise 5.0.x before 5.0.10 allows remote attackers ...
CVE-2014-8240Integer overflow in TigerVNC allows remote VNC servers to cause a denial of service (crash) and possibly execute arbitra...
CVE-2014-7181Cross-site scripting (XSS) vulnerability in the Max Foundry MaxButtons plugin before 1.26.1 for WordPress allows remote ...
CVE-2014-7138Cross-site scripting (XSS) vulnerability in the Google Calendar Events plugin before 2.0.4 for WordPress allows remote a...
CVE-2014-7050The givenu give (aka com.givenu.give) application 1.5.3 for Android does not verify X.509 certificates from SSL servers,...
CVE-2014-7049The SomTodo - Task/To-do widget (aka com.somcloud.somtodo) application 2.0.3 for Android does not verify X.509 certifica...
CVE-2014-7048The Bear ID Lock (aka com.wBearIDLock) application 0.1 for Android does not verify X.509 certificates from SSL servers, ...
CVE-2014-7045The Bust Out Bail (aka com.onesolutionapps.bustoutbailandroid) application 1.1 for Android does not verify X.509 certifi...
CVE-2014-7044The Street Walker (aka kt.road.StreetWalker) application 0.0.1 for Android does not verify X.509 certificates from SSL s...
CVE-2014-7043The Cadpage (aka net.anei.cadpage) application 1.7.44 for Android does not verify X.509 certificates from SSL servers, w...
CVE-2014-7042The My nTelos (aka com.telespree.ntelospostpay) application 1.1.2 for Android does not verify X.509 certificates from SS...
CVE-2014-7041The SimGene (aka com.japanbioinformatics.simgene) application 1.3 for Android does not verify X.509 certificates from SS...
CVE-2014-7040The UniCredit Investors (aka eu.unicreditgroup.brand.ucinvestors) application 1.0 for Android does not verify X.509 cert...
CVE-2014-7039The Wild Women United (aka com.wildwomenunited) application 1.0 for Android does not verify X.509 certificates from SSL ...
CVE-2014-7038The Al Jazeera (aka com.Al.Jazeera.net) application 6.0 for Android does not verify X.509 certificates from SSL servers,...
CVE-2014-7037The Noble Sticker "FREE" (aka com.kuronecostudio.kizokustamp.free) application 1.0.7 for Android does not verify X.509 c...
CVE-2014-7036The Quest Federal CU Mobile (aka com.metova.cuae.questfcu) application 1.0.27 for Android does not verify X.509 certific...
CVE-2014-7035The Harmonizers Planet (aka uk.co.pixelkicks.fifthharmony) application 2.3.4 for Android does not verify X.509 certifica...

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now