2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-4977 | — | — | 74.9% | Jul 16, 2014 | Multiple SQL injection vulnerabilities in Dell SonicWall Scrutinizer 11.0.1 allow remote authenticated users to execute ... |
| CVE-2014-4976 | — | — | 2.7% | Jul 16, 2014 | Dell SonicWall Scrutinizer 11.0.1 allows remote authenticated users to change user passwords via the user ID in the save... |
| CVE-2014-4347 | — | — | 1.7% | Jul 16, 2014 | Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway (formerly Access Gateway Enterprise Edition... |
| CVE-2014-4346 | — | — | 1.7% | Jul 16, 2014 | Cross-site scripting (XSS) vulnerability in administration user interface in Citrix NetScaler Application Delivery Contr... |
| CVE-2014-4154 | — | — | 6.6% | Jul 16, 2014 | ZTE ZXV10 W300 router with firmware W300V1.0.0a_ZRD_LK stores sensitive information under the web root with insufficient... |
| CVE-2014-4018 | — | — | 6.3% | Jul 16, 2014 | The ZTE ZXV10 W300 router with firmware W300V1.0.0a_ZRD_LK has a default password of admin for the admin account, which ... |
| CVE-2014-3777 | — | — | 3.7% | Jul 16, 2014 | Directory traversal vulnerability in Reportico PHP Report Designer before 4.0 allows remote attackers to read arbitrary ... |
| CVE-2014-3427 | — | — | 5.2% | Jul 16, 2014 | CRLF injection vulnerability in Yealink VoIP Phones with firmware 28.72.0.2 allows remote attackers to inject arbitrary ... |
| CVE-2014-2622 | — | — | 2.6% | Jul 16, 2014 | Unspecified vulnerability in HP Intelligent Management Center (iMC) before 7.0 E02020P03 and Branch Intelligent Manageme... |
| CVE-2014-2621 | — | — | 4.6% | Jul 16, 2014 | Unspecified vulnerability in HP Intelligent Management Center (iMC) before 7.0 E02020P03 and Branch Intelligent Manageme... |
| CVE-2014-2620 | — | — | 4.6% | Jul 16, 2014 | Unspecified vulnerability in HP Intelligent Management Center (iMC) before 7.0 E02020P03 and Branch Intelligent Manageme... |
| CVE-2014-2619 | — | — | 4.6% | Jul 16, 2014 | Unspecified vulnerability in HP Intelligent Management Center (iMC) before 7.0 E02020P03 and Branch Intelligent Manageme... |
| CVE-2014-2618 | — | — | 4.6% | Jul 16, 2014 | Unspecified vulnerability in HP Intelligent Management Center (iMC) before 7.0 E02020P03 and Branch Intelligent Manageme... |
| CVE-2014-2606 | — | — | 3.6% | Jul 16, 2014 | Unspecified vulnerability in HP StoreVirtual 4000 Storage and StoreVirtual VSA 9.5 through 11.0 allows remote authentica... |
| CVE-2014-2605 | — | — | 3.7% | Jul 16, 2014 | Unspecified vulnerability in HP StoreVirtual 4000 Storage and StoreVirtual VSA 9.5 through 11.0 allows remote attackers ... |
| CVE-2014-4965 | — | — | 3.2% | Jul 15, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in Shopizer 1.1.5 and earlier allow remote attackers to inject arbit... |
| CVE-2014-4964 | — | — | 2.3% | Jul 15, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in Shopizer 1.1.5 and earlier allow remote attackers to hijac... |
| CVE-2014-4963 | — | — | 3.7% | Jul 15, 2014 | Shopizer 1.1.5 and earlier allows remote attackers to modify the account settings of arbitrary users via the customer.cu... |
| CVE-2014-4962 | — | — | 4.7% | Jul 15, 2014 | Shopizer 1.1.5 and earlier allows remote attackers to reduce the total cost of their shopping cart via a negative number... |
| CVE-2014-4663 | — | — | 9.8% | Jul 15, 2014 | TimThumb 2.8.13 and WordThumb 1.07, when Webshot (aka Webshots) is enabled, allows remote attackers to execute arbitrary... |
| CVE-2014-4031 | — | — | 0.9% | Jul 15, 2014 | The Policy Manager in Aruba Networks ClearPass 5.x, 6.0.x, 6.1.x through 6.1.4.61696, 6.2.x through 6.2.6.62196, and 6.3... |
| CVE-2014-3953 | — | — | 0.4% | Jul 15, 2014 | FreeBSD 8.4 before p14, 9.1 before p17, 9.2 before p10, and 10.0 before p7 does not properly initialize certain data str... |
| CVE-2014-3952 | — | — | 0.3% | Jul 15, 2014 | FreeBSD 8.4 before p14, 9.1 before p17, 9.2 before p10, and 10.0 before p7 does not properly initialize the buffer betwe... |
| CVE-2014-3419 | — | — | 0.5% | Jul 15, 2014 | Infoblox NetMRI before 6.8.5 has a default password of admin for the "root" MySQL database account, which makes it easie... |
| CVE-2014-3418 | — | — | 7.2% | Jul 15, 2014 | config/userAdmin/login.tdf in Infoblox NetMRI before 6.8.5 allows remote attackers to execute arbitrary commands via she... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now