2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-5982 | — | — | 0.3% | Sep 22, 2014 | The RunKeeper - GPS Track Run Walk (aka com.fitnesskeeper.runkeeper.pro) application 4.7 for Android does not verify X.5... |
| CVE-2014-5971 | — | — | 0.3% | Sep 22, 2014 | The Fiksu library for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attack... |
| CVE-2014-5809 | — | — | 0.3% | Sep 22, 2014 | The Smart Browser (aka smartbrowser.geniuscloud) application 2.0 for Android does not verify X.509 certificates from SSL... |
| CVE-2014-5665 | — | — | 0.3% | Sep 22, 2014 | The Mzone Login (aka com.mr384.MzoneLogin) application 1.2.0 for Android does not verify X.509 certificates from SSL ser... |
| CVE-2014-5575 | — | — | — | Sep 22, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2014-5523 | — | — | — | Sep 22, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5524. Reason: This candidate is a duplicate of... |
| CVE-2014-5522 | — | — | — | Sep 22, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-6025. Reason: This candidate is a reservation ... |
| CVE-2014-2942 | — | — | 0.4% | Sep 22, 2014 | Cobham Aviator 700D and 700E satellite terminals use an improper algorithm for PIN codes, which makes it easier for atta... |
| CVE-2014-6602 | — | — | 2.2% | Sep 22, 2014 | Microsoft Asha OS on the Microsoft Mobile Nokia Asha 501 phone 14.0.4 allows physically proximate attackers to bypass th... |
| CVE-2014-5322 | — | — | 1.8% | Sep 22, 2014 | Cross-site scripting (XSS) vulnerability in the Instant Web Publish function in FileMaker Pro before 13 and Pro Advanced... |
| CVE-2014-5321 | — | — | 0.5% | Sep 22, 2014 | FileMaker Pro before 13 and Pro Advanced before 13 does not verify X.509 certificates from SSL servers, which allows man... |
| CVE-2014-5320 | — | — | 1.0% | Sep 22, 2014 | The Bump application for Android does not properly handle implicit intents, which allows attackers to obtain sensitive o... |
| CVE-2014-5316 | — | — | 1.2% | Sep 22, 2014 | Cross-site scripting (XSS) vulnerability in Dotclear before 2.6.4 allows remote attackers to inject arbitrary web script... |
| CVE-2014-6432 | — | — | 3.1% | Sep 20, 2014 | The SnifferDecompress function in wiretap/ngsniffer.c in the DOS Sniffer file parser in Wireshark 1.10.x before 1.10.10 ... |
| CVE-2014-6431 | — | — | 3.4% | Sep 20, 2014 | Buffer overflow in the SnifferDecompress function in wiretap/ngsniffer.c in the DOS Sniffer file parser in Wireshark 1.1... |
| CVE-2014-6430 | — | — | 3.1% | Sep 20, 2014 | The SnifferDecompress function in wiretap/ngsniffer.c in the DOS Sniffer file parser in Wireshark 1.10.x before 1.10.10 ... |
| CVE-2014-6429 | — | — | 3.1% | Sep 20, 2014 | The SnifferDecompress function in wiretap/ngsniffer.c in the DOS Sniffer file parser in Wireshark 1.10.x before 1.10.10 ... |
| CVE-2014-6428 | — | — | 3.2% | Sep 20, 2014 | The dissect_spdu function in epan/dissectors/packet-ses.c in the SES dissector in Wireshark 1.10.x before 1.10.10 and 1.... |
| CVE-2014-6427 | — | — | 3.4% | Sep 20, 2014 | Off-by-one error in the is_rtsp_request_or_reply function in epan/dissectors/packet-rtsp.c in the RTSP dissector in Wire... |
| CVE-2014-6426 | — | — | 2.4% | Sep 20, 2014 | The dissect_hip_tlv function in epan/dissectors/packet-hip.c in the HIP dissector in Wireshark 1.12.x before 1.12.1 does... |
| CVE-2014-6425 | — | — | 2.8% | Sep 20, 2014 | The (1) get_quoted_string and (2) get_unquoted_string functions in epan/dissectors/packet-cups.c in the CUPS dissector i... |
| CVE-2014-6424 | — | — | 2.9% | Sep 20, 2014 | The dissect_v9_v10_pdu_data function in epan/dissectors/packet-netflow.c in the Netflow dissector in Wireshark 1.10.x be... |
| CVE-2014-6423 | — | — | 3.1% | Sep 20, 2014 | The tvb_raw_text_add function in epan/dissectors/packet-megaco.c in the MEGACO dissector in Wireshark 1.10.x before 1.10... |
| CVE-2014-6422 | — | — | 3.2% | Sep 20, 2014 | The SDP dissector in Wireshark 1.10.x before 1.10.10 creates duplicate hashtables for a media channel, which allows remo... |
| CVE-2014-6421 | — | — | 2.9% | Sep 20, 2014 | Use-after-free vulnerability in the SDP dissector in Wireshark 1.10.x before 1.10.10 allows remote attackers to cause a ... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now