2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-6958 | — | — | 0.3% | Oct 16, 2014 | The ISMRM-ESMRMB 2014 (aka com.coreapps.android.followme.ismrm_esmrmb14) application 6.0.8.5 for Android does not verify... |
| CVE-2014-6957 | — | — | 0.3% | Oct 16, 2014 | The scottcolibmn (aka com.bredir.boopsie.scottlib) application 4.5.110 for Android does not verify X.509 certificates fr... |
| CVE-2014-6956 | — | — | 0.3% | Oct 16, 2014 | The Hydrogen Water (aka com.appzone628) application 1.0 for Android does not verify X.509 certificates from SSL servers,... |
| CVE-2014-6955 | — | — | 0.3% | Oct 16, 2014 | The Le Grand Bleu (aka com.appzone468) application 1.0 for Android does not verify X.509 certificates from SSL servers, ... |
| CVE-2014-6954 | — | — | 0.3% | Oct 16, 2014 | The Deer Hunting Calls + Guide (aka com.anawaz.deerhuntingcalls.free) application 4.0.1 for Android does not verify X.50... |
| CVE-2014-6953 | — | — | 0.3% | Oct 16, 2014 | The AFTERLIFE WITH ARCHIE (aka com.afterlifewitharchie.afterlifewitharchie) application 2.4.1 for Android does not verif... |
| CVE-2014-4881 | — | — | 0.3% | Oct 16, 2014 | The PartyTrack library for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle a... |
| CVE-2014-3680 | — | — | 1.4% | Oct 16, 2014 | Jenkins before 1.583 and LTS before 1.565.3 allows remote authenticated users with the Job/READ permission to obtain the... |
| CVE-2014-3679 | — | — | 1.8% | Oct 16, 2014 | The Monitoring plugin before 1.53.0 for Jenkins allows remote attackers to obtain sensitive information by accessing uns... |
| CVE-2014-3667 | — | — | 1.4% | Oct 16, 2014 | Jenkins before 1.583 and LTS before 1.565.3 does not properly prevent downloading of plugins, which allows remote authen... |
| CVE-2014-3666 | — | — | 3.7% | Oct 16, 2014 | Jenkins before 1.583 and LTS before 1.565.3 allows remote attackers to execute arbitrary code via a crafted packet to th... |
| CVE-2014-3663 | — | — | 1.4% | Oct 16, 2014 | Jenkins before 1.583 and LTS before 1.565.3 allows remote authenticated users with the Job/CONFIGURE permission to bypas... |
| CVE-2014-3662 | — | — | 1.7% | Oct 16, 2014 | Jenkins before 1.583 and LTS before 1.565.3 allows remote attackers to enumerate user names via vectors related to login... |
| CVE-2014-3661 | — | — | 1.8% | Oct 16, 2014 | Jenkins before 1.583 and LTS before 1.565.3 allows remote attackers to cause a denial of service (thread consumption) vi... |
| CVE-2014-8296 | — | — | 1.8% | Oct 16, 2014 | Cross-site scripting (XSS) vulnerability in the Modal Frame API module 6.x-1.x before 6.x-1.9 for Drupal allows remote a... |
| CVE-2014-7237 | — | — | 20.1% | Oct 16, 2014 | lib/TWiki/Sandbox.pm in TWiki 6.0.0 and earlier, when running on Windows, allows remote attackers to bypass intended acc... |
| CVE-2014-3704 | — | — | 100.0% | Oct 16, 2014 | The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct ... |
| CVE-2014-3686 | — | — | 4.9% | Oct 16, 2014 | wpa_supplicant and hostapd 0.7.2 through 2.2, when running with certain configurations and using wpa_cli or hostapd_cli ... |
| CVE-2014-6564 | — | — | 2.4% | Oct 15, 2014 | Unspecified vulnerability in Oracle MySQL Server 5.6.19 and earlier allows remote authenticated users to affect availabi... |
| CVE-2014-6563 | — | — | 1.5% | Oct 15, 2014 | Unspecified vulnerability in the Java VM component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and... |
| CVE-2014-6562 | — | — | 4.8% | Oct 15, 2014 | Unspecified vulnerability in Oracle Java SE 8u20 allows remote attackers to affect confidentiality, integrity, and avail... |
| CVE-2014-6561 | — | — | 1.2% | Oct 15, 2014 | Unspecified vulnerability in the Oracle Payments component in Oracle E-Business Suite 12.0.4, 12.0.6, 12.1.1, 12.1.2, 12... |
| CVE-2014-6560 | — | — | 2.5% | Oct 15, 2014 | Unspecified vulnerability in the Java VM component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and... |
| CVE-2014-6559 | — | — | 4.6% | Oct 15, 2014 | Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to ... |
| CVE-2014-6558 | — | — | 3.1% | Oct 15, 2014 | Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20; Java SE Embedded 7u60; and JRockit R27.8.3 and... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now