2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-10385 | — | — | 0.9% | Aug 22, 2019 | The memphis-documents-library plugin before 3.0 for WordPress has XSS via $_REQUEST. |
| CVE-2014-10384 | — | — | 2.1% | Aug 22, 2019 | The memphis-documents-library plugin before 3.0 for WordPress has Local File Inclusion. |
| CVE-2014-10383 | — | — | 2.7% | Aug 22, 2019 | The memphis-documents-library plugin before 3.0 for WordPress has Remote File Inclusion. |
| CVE-2014-10379 | — | — | 1.8% | Aug 21, 2019 | The duplicate-post plugin before 2.6 for WordPress has SQL injection. |
| CVE-2014-10378 | — | — | 0.9% | Aug 21, 2019 | The duplicate-post plugin before 2.6 for WordPress has XSS. |
| CVE-2014-10377 | MEDIUM | 6.1 | 0.9% | Aug 21, 2019 | The cforms2 plugin before 13.2 for WordPress has XSS in lib_ajax.php. |
| CVE-2014-10380 | — | — | 0.9% | Aug 21, 2019 | The profile-builder plugin before 1.1.66 for WordPress has multiple XSS issues in forms. |
| CVE-2014-10381 | — | — | 0.7% | Aug 20, 2019 | The user-domain-whitelist plugin before 1.5 for WordPress has CSRF. |
| CVE-2014-10376 | — | — | 1.8% | Aug 16, 2019 | The i-recommend-this plugin before 3.7.3 for WordPress has SQL injection. |
| CVE-2014-10375 | — | — | 1.2% | Aug 14, 2019 | handle_messages in eXtl_tls.c in eXosip before 5.0.0 mishandles a negative value in a content-length header. |
| CVE-2014-8184 | HIGH | 7.8 | 1.5% | Aug 2, 2019 | A vulnerability was found in liblouis, versions 2.5.x before 2.5.4. A stack-based buffer overflow was found in findTable... |
| CVE-2014-8183 | HIGH | 7.4 | 0.7% | Aug 1, 2019 | It was found that foreman, versions 1.x.x before 1.15.6, in Satellite 6 did not properly enforce access controls on cert... |
| CVE-2014-10374 | — | — | 0.6% | Jul 15, 2019 | On Fitbit activity-tracker devices, certain addresses never change. According to the popets-2019-0036.pdf document, this... |
| CVE-2014-3798 | — | — | 1.9% | Jul 11, 2019 | The Windows Guest Tools in Citrix XenServer 6.2 SP1 and earlier allows remote attackers to cause a denial of service (gu... |
| CVE-2014-9699 | — | — | 1.2% | Jun 24, 2019 | The MakerBot Replicator 5G printer runs an Apache HTTP Server with directory indexing enabled. Apache logs, system logs,... |
| CVE-2014-9919 | — | — | 0.8% | May 15, 2019 | An issue was discovered in Bilboplanet 2.0. Stored XSS exists in the fullname parameter to signup.php. |
| CVE-2014-9918 | — | — | 0.8% | May 15, 2019 | An issue was discovered in Bilboplanet 2.0. Stored XSS exists in the user_id parameter to signup.php. |
| CVE-2014-9917 | — | — | 0.8% | May 15, 2019 | An issue was discovered in Bilboplanet 2.0. There is a stored XSS vulnerability when adding a tag via the user/?page=tri... |
| CVE-2014-1428 | LOW | 2 | 0.9% | Apr 22, 2019 | A vulnerability in generate_filestorage_key of Ubuntu MAAS allows an attacker to brute-force filenames. This issue affec... |
| CVE-2014-1427 | CRITICAL | 9.6 | 1.1% | Apr 22, 2019 | A vulnerability in the REST API of Ubuntu MAAS allows an attacker to cause a logged-in user to execute commands via cros... |
| CVE-2014-1426 | HIGH | 8.6 | 1.4% | Apr 22, 2019 | A vulnerability in maasserver.api.get_file_by_name of Ubuntu MAAS allows unauthenticated network clients to download any... |
| CVE-2014-9186 | — | — | 3.6% | Apr 8, 2019 | A file inclusion vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400.6, R41x before ... |
| CVE-2014-5436 | — | — | 3.1% | Apr 8, 2019 | A directory traversal vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400.6, R41x be... |
| CVE-2014-5435 | — | — | 3.5% | Apr 8, 2019 | An arbitrary memory write vulnerability exists in the dual_onsrv.exe module in Honeywell Experion PKS R40x before R400.6... |
| CVE-2014-3603 | — | — | 0.8% | Apr 4, 2019 | The (1) HttpResource and (2) FileBackedHttpResource implementations in Shibboleth Identity Provider (IdP) before 2.4.1 a... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now