2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-5198 | — | — | 1.8% | Aug 12, 2014 | Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk Enterprise 6.1.x before 6.1.3 allows remote attackers t... |
| CVE-2014-5197 | — | — | 2.2% | Aug 12, 2014 | Directory traversal vulnerability in (1) Splunk Web or the (2) Splunkd HTTP Server in Splunk Enterprise 6.1.x before 6.1... |
| CVE-2014-5196 | — | — | 2.1% | Aug 12, 2014 | Cross-site request forgery (CSRF) vulnerability in improved-user-search-in-backend.php in the backend in the Improved us... |
| CVE-2014-3072 | — | — | 0.4% | Aug 12, 2014 | Unspecified vulnerability in the Automation Server in IBM Security AppScan Source 8 through 8.0.0.2, 8.5 through 8.5.0.1... |
| CVE-2014-2629 | — | — | 2.1% | Aug 12, 2014 | HP NonStop Safeguard Security Software G, H06.03 through H06.28.01, and J06.03 through J06.17.01 does not properly evalu... |
| CVE-2014-4760 | — | — | 1.8% | Aug 12, 2014 | Open redirect vulnerability in IBM WebSphere Portal 6.1.0.0 through 6.1.0.6 CF27, 6.1.5.0 through 6.1.5.3 CF27, 7.0.0 th... |
| CVE-2014-4751 | — | — | 1.8% | Aug 12, 2014 | Cross-site scripting (XSS) vulnerability in IBM Security Access Manager for Mobile 8.0.0.0, 8.0.0.1, and 8.0.0.3 allows ... |
| CVE-2014-4746 | — | — | 2.1% | Aug 12, 2014 | IBM WebSphere Portal 8.0.0 before 8.0.0.1 CF13 and 8.5.0 through CF01 provides different error codes for firewall-traver... |
| CVE-2014-3899 | — | — | 1.5% | Aug 12, 2014 | Gretech GOM Player 2.2.51.5149 and earlier allows remote attackers to cause a denial of service (launch outage) via a cr... |
| CVE-2014-3102 | — | — | 1.4% | Aug 12, 2014 | Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 7.0.0 through 7.0.0.2 CF28 and 8.0.0 before 8.0.0.1 CF1... |
| CVE-2014-2630 | — | — | 7.1% | Aug 12, 2014 | Unspecified vulnerability in HP Operations Agent 11.00, when Glance is used, allows local users to gain privileges via u... |
| CVE-2014-0953 | — | — | 1.8% | Aug 12, 2014 | Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 6.1.0.0 through 6.1.0.6 CF27, 6.1.5.0 through 6.1.5.3 C... |
| CVE-2014-4757 | — | — | 0.3% | Aug 12, 2014 | The Outlook Extension in IBM Content Collector 4.0.0.x before 4.0.0.0-ICC-OE-IF004 allows local users to bypass the inte... |
| CVE-2014-3086 | — | — | 5.1% | Aug 12, 2014 | Unspecified vulnerability in the IBM Java Virtual Machine, as used in IBM WebSphere Real Time 3 before Service Refresh 7... |
| CVE-2014-3069 | — | — | 1.0% | Aug 12, 2014 | Multiple CRLF injection vulnerabilities in the Universal Access component in IBM Curam Social Program Management (SPM) 6... |
| CVE-2014-3031 | — | — | 0.8% | Aug 12, 2014 | Cross-site scripting (XSS) vulnerability in IBM Tivoli Business Service Manager 4.2.0 before 4.2.0.0 IF12 and 4.2.1 befo... |
| CVE-2014-2631 | — | — | 0.6% | Aug 12, 2014 | Unspecified vulnerability in HP Application Lifecycle Management (aka Quality Center) 11.5x and 12.0x allows local users... |
| CVE-2014-2628 | — | — | 1.9% | Aug 12, 2014 | Unspecified vulnerability in HP Enterprise Maps 1 allows remote authenticated users to obtain sensitive information via ... |
| CVE-2014-3330 | — | — | 2.1% | Aug 11, 2014 | Cisco NX-OS 6.1(2)I2(1) on Nexus 9000 switches does not properly process packet-drop policy checks for logged packets, w... |
| CVE-2014-3327 | — | — | 3.3% | Aug 11, 2014 | The EnergyWise module in Cisco IOS 12.2, 15.0, 15.1, 15.2, and 15.4 and IOS XE 3.2.xXO, 3.3.xSG, 3.4.xSG, and 3.5.xE bef... |
| CVE-2014-3076 | — | — | 2.1% | Aug 11, 2014 | IBM Business Process Manager (BPM) 8.5 through 8.5.5 allows remote attackers to obtain potentially sensitive information... |
| CVE-2014-2357 | — | — | 2.8% | Aug 11, 2014 | The GPT library in the Telegyr 8979 Master Protocol application in SUBNET SubSTATION Server 2 before SSNET 2.12 HF18808 ... |
| CVE-2014-3336 | — | — | 1.7% | Aug 11, 2014 | SQL injection vulnerability in the web framework in Cisco Unity Connection 9.1(2) and earlier allows remote authenticate... |
| CVE-2014-3333 | — | — | 3.1% | Aug 11, 2014 | The server in Cisco Unity Connection 9.1(1) and 9.1(2) allows remote authenticated users to obtain privileged access by ... |
| CVE-2014-3332 | — | — | 1.6% | Aug 11, 2014 | Cisco Unified Communications Manager (CM) 8.6(.2) and earlier has an incorrect CLI restrictions setting, which allows re... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now