2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-3316 | — | — | 1.8% | Jul 10, 2014 | The Multiple Analyzer in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager allows remot... |
| CVE-2014-3315 | — | — | 1.2% | Jul 10, 2014 | Cross-site scripting (XSS) vulnerability in viewfilecontents.do in the Dialed Number Analyzer (DNA) component in Cisco U... |
| CVE-2014-3311 | — | — | 3.4% | Jul 10, 2014 | Heap-based buffer overflow in the file-sharing feature in WebEx Meetings Client in Cisco WebEx Meetings Server and WebEx... |
| CVE-2014-3310 | — | — | 1.2% | Jul 10, 2014 | The File Transfer feature in WebEx Meetings Client in Cisco WebEx Meetings Server and WebEx Meeting Center does not veri... |
| CVE-2014-2963 | — | — | 1.7% | Jul 10, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in group/control_panel/manage in Liferay Portal 6.1.2 CE GA3, 6.1.X ... |
| CVE-2014-4744 | — | — | 1.9% | Jul 9, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in osTicket before 1.9.2 allow remote attackers to inject arbitrary ... |
| CVE-2014-4743 | — | — | 1.9% | Jul 9, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in (1) search_ajax.tpl and (2) search_ajax_small.tpl in templates/de... |
| CVE-2014-4742 | — | — | 1.9% | Jul 9, 2014 | Cross-site scripting (XSS) vulnerability in system/class_link.php in the System module (module_system) in Kajona before ... |
| CVE-2014-4741 | — | — | 2.1% | Jul 9, 2014 | SQL injection vulnerability in demo/ads.php in Artifectx xClassified 1.2 allows remote attackers to execute arbitrary SQ... |
| CVE-2014-4740 | — | — | — | Jul 9, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-4907, CVE-2014-4908. Reason: This candidate is... |
| CVE-2014-4194 | — | — | 1.2% | Jul 9, 2014 | SQL injection vulnerability in zero_transact_article.php in ZeroCMS 1.0 allows remote attackers to execute arbitrary SQL... |
| CVE-2014-4022 | — | — | 0.5% | Jul 9, 2014 | The alloc_domain_struct function in arch/arm/domain.c in Xen 4.4.x, when running on an ARM platform, does not properly i... |
| CVE-2014-4699 | — | — | 2.3% | Jul 9, 2014 | The Linux kernel before 3.15.4 on Intel processors does not properly restrict use of a non-canonical value for the saved... |
| CVE-2014-3891 | — | — | 2.0% | Jul 9, 2014 | Buffer overflow in RimArts Becky! Internet Mail before 2.68 allows remote POP3 servers to execute arbitrary code via a c... |
| CVE-2014-3515 | — | — | 30.1% | Jul 9, 2014 | The SPL component in PHP before 5.4.30 and 5.5.x before 5.5.14 incorrectly anticipates that certain data structures will... |
| CVE-2014-3487 | — | — | 14.9% | Jul 9, 2014 | The cdf_read_property_info function in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.... |
| CVE-2014-3479 | — | — | 14.9% | Jul 9, 2014 | The cdf_check_stream_offset function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.3... |
| CVE-2014-3313 | — | — | 2.0% | Jul 9, 2014 | Cross-site scripting (XSS) vulnerability in the web user interface on Cisco Small Business SPA300 and SPA500 phones allo... |
| CVE-2014-3312 | — | — | 0.4% | Jul 9, 2014 | The debug console interface on Cisco Small Business SPA300 and SPA500 phones does not properly perform authentication, w... |
| CVE-2014-3309 | — | — | 2.1% | Jul 9, 2014 | The NTP implementation in Cisco IOS and IOS XE does not properly support use of the access-group command for a "deny all... |
| CVE-2014-4671 | — | — | 23.0% | Jul 9, 2014 | Adobe Flash Player before 13.0.0.231 and 14.x before 14.0.0.145 on Windows and OS X and before 11.2.202.394 on Linux, Ad... |
| CVE-2014-0539 | — | — | 4.4% | Jul 9, 2014 | Adobe Flash Player before 13.0.0.231 and 14.x before 14.0.0.145 on Windows and OS X and before 11.2.202.394 on Linux, Ad... |
| CVE-2014-0537 | — | — | 4.4% | Jul 9, 2014 | Adobe Flash Player before 13.0.0.231 and 14.x before 14.0.0.145 on Windows and OS X and before 11.2.202.394 on Linux, Ad... |
| CVE-2014-2814 | — | — | 18.3% | Jul 8, 2014 | Microsoft Service Bus 1.1 on Microsoft Windows Server 2008 R2 SP1 and Server 2012 Gold and R2 allows remote authenticate... |
| CVE-2014-2813 | — | — | 16.4% | Jul 8, 2014 | Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now