2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2014-2723HIGH8.8In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may ...
CVE-2014-2722HIGH8.8In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may ...
CVE-2014-2721HIGH8.8In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may ...
CVE-2014-7914HIGH8.1btif/src/btif_dm.c in Android before 5.1 does not properly enforce the temporary nature of a Bluetooth pairing, which al...
CVE-2014-4019HIGH7.5ZTE ZXV10 W300 router with firmware W300V1.0.0a_ZRD_LK stores sensitive information under the web root with insufficient...
CVE-2014-1947HIGH7.8Stack-based buffer overflow in the WritePSDImage function in coders/psd.c in ImageMagick 6.5.4 and earlier allows remote...
CVE-2014-3208HIGH7.5A Denial of Service vulnerability exists in askpop3d 0.7.7 in free (pszQuery),
CVE-2014-3860HIGH7.8Xilisoft Video Converter Ultimate 7.8.1 build-20140505 has a DLL Hijacking vulnerability
CVE-2014-4607HIGH8.8Integer overflow in the LZO algorithm variant in Oberhumer liblzo2 and lzo-2 before 2.07 on 32-bit platforms might allow...
CVE-2014-2560HIGH7.5The PhonerLite phone before 2.15 provides hashed credentials in a response to an invalid authentication challenge, which...
CVE-2014-6262HIGH7.5Multiple format string vulnerabilities in the python module in RRDtool, as used in Zenoss Core before 4.2.5 and other pr...
CVE-2014-4968HIGH8.8The WebView class and use of the WebView.addJavascriptInterface method in the Boat Browser application 8.0 and 8.0.1 for...
CVE-2014-9748HIGH8.1The uv_rwlock_t fallback implementation for Windows XP and Server 2003 in libuv before 1.7.4 does not properly prevent t...
CVE-2014-6447HIGH7.1Multiple vulnerabilities exist in Juniper Junos J-Web error handling that may lead to cross site scripting (XSS) issues ...
CVE-2014-8347HIGH7.8An Authentication Bypass vulnerability exists in the MatchPasswordData function in DBEngine.dll in Filemaker Pro 13.03 a...
CVE-2014-5086HIGH8.8A Command Execution vulnerability exists in Sphider Pro, and Sphider Plus 3.2 due to insufficient sanitization of fwrite...
CVE-2014-5085HIGH8.8A Command Execution vulnerability exists in Sphider Plus 3.2 due to insufficient sanitization of fwrite to conf.php, whi...
CVE-2014-5084HIGH8.8A Command Execution vulnerability exists in Sphider Pro 3.2 due to insufficient sanitization of fwrite, which could let ...
CVE-2014-5083HIGH8.8A Command Execution vulnerability exists in Sphider before 1.3.6 due to insufficient sanitization of fwrite to conf.php,...
CVE-2014-7863HIGH7.5The FailOverHelperServlet (aka FailServlet) servlet in ZOHO ManageEngine Applications Manager before 11.9 build 11912, O...
CVE-2014-2225HIGH8.8Multiple cross-site request forgery (CSRF) vulnerabilities in Ubiquiti Networks UniFi Controller before 3.2.1 allow remo...
CVE-2014-5468HIGH8.8A File Inclusion vulnerability exists in Railo 4.2.1 and earlier via a specially-crafted URL request to the thumbnail.cf...
CVE-2014-5288HIGH8.8A CSRF Vulnerability exists in Kemp Load Master before 7.0-18a via unspecified vectors in administrative pages.
CVE-2014-7224HIGH8.8A Code Execution vulnerability exists in Android prior to 4.4.0 related to the addJavascriptInterface method and the acc...
CVE-2014-2030HIGH8.8Stack-based buffer overflow in the WritePSDImage function in coders/psd.c in ImageMagick, possibly 6.8.8-5, allows remot...

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now