2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2014-4977Multiple SQL injection vulnerabilities in Dell SonicWall Scrutinizer 11.0.1 allow remote authenticated users to execute ...
CVE-2014-4976Dell SonicWall Scrutinizer 11.0.1 allows remote authenticated users to change user passwords via the user ID in the save...
CVE-2014-4347Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway (formerly Access Gateway Enterprise Edition...
CVE-2014-4346Cross-site scripting (XSS) vulnerability in administration user interface in Citrix NetScaler Application Delivery Contr...
CVE-2014-4154ZTE ZXV10 W300 router with firmware W300V1.0.0a_ZRD_LK stores sensitive information under the web root with insufficient...
CVE-2014-4018The ZTE ZXV10 W300 router with firmware W300V1.0.0a_ZRD_LK has a default password of admin for the admin account, which ...
CVE-2014-3777Directory traversal vulnerability in Reportico PHP Report Designer before 4.0 allows remote attackers to read arbitrary ...
CVE-2014-3427CRLF injection vulnerability in Yealink VoIP Phones with firmware 28.72.0.2 allows remote attackers to inject arbitrary ...
CVE-2014-2622Unspecified vulnerability in HP Intelligent Management Center (iMC) before 7.0 E02020P03 and Branch Intelligent Manageme...
CVE-2014-2621Unspecified vulnerability in HP Intelligent Management Center (iMC) before 7.0 E02020P03 and Branch Intelligent Manageme...
CVE-2014-2620Unspecified vulnerability in HP Intelligent Management Center (iMC) before 7.0 E02020P03 and Branch Intelligent Manageme...
CVE-2014-2619Unspecified vulnerability in HP Intelligent Management Center (iMC) before 7.0 E02020P03 and Branch Intelligent Manageme...
CVE-2014-2618Unspecified vulnerability in HP Intelligent Management Center (iMC) before 7.0 E02020P03 and Branch Intelligent Manageme...
CVE-2014-2606Unspecified vulnerability in HP StoreVirtual 4000 Storage and StoreVirtual VSA 9.5 through 11.0 allows remote authentica...
CVE-2014-2605Unspecified vulnerability in HP StoreVirtual 4000 Storage and StoreVirtual VSA 9.5 through 11.0 allows remote attackers ...
CVE-2014-4965Multiple cross-site scripting (XSS) vulnerabilities in Shopizer 1.1.5 and earlier allow remote attackers to inject arbit...
CVE-2014-4964Multiple cross-site request forgery (CSRF) vulnerabilities in Shopizer 1.1.5 and earlier allow remote attackers to hijac...
CVE-2014-4963Shopizer 1.1.5 and earlier allows remote attackers to modify the account settings of arbitrary users via the customer.cu...
CVE-2014-4962Shopizer 1.1.5 and earlier allows remote attackers to reduce the total cost of their shopping cart via a negative number...
CVE-2014-4663TimThumb 2.8.13 and WordThumb 1.07, when Webshot (aka Webshots) is enabled, allows remote attackers to execute arbitrary...
CVE-2014-4031The Policy Manager in Aruba Networks ClearPass 5.x, 6.0.x, 6.1.x through 6.1.4.61696, 6.2.x through 6.2.6.62196, and 6.3...
CVE-2014-3953FreeBSD 8.4 before p14, 9.1 before p17, 9.2 before p10, and 10.0 before p7 does not properly initialize certain data str...
CVE-2014-3952FreeBSD 8.4 before p14, 9.1 before p17, 9.2 before p10, and 10.0 before p7 does not properly initialize the buffer betwe...
CVE-2014-3419Infoblox NetMRI before 6.8.5 has a default password of admin for the "root" MySQL database account, which makes it easie...
CVE-2014-3418config/userAdmin/login.tdf in Infoblox NetMRI before 6.8.5 allows remote attackers to execute arbitrary commands via she...

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now