2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-4349 | — | — | 2.1% | Jun 25, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 4.1.x before 4.1.14.1 and 4.2.x before 4.2.4 allow rem... |
| CVE-2014-4348 | — | — | 1.5% | Jun 25, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 4.2.x before 4.2.4 allow remote authenticated users to... |
| CVE-2014-3882 | — | — | 1.1% | Jun 25, 2014 | Cross-site request forgery (CSRF) vulnerability in the Login rebuilder plugin before 1.2.0 for WordPress allows remote a... |
| CVE-2014-3299 | — | — | 3.1% | Jun 25, 2014 | Cisco IOS allows remote authenticated users to cause a denial of service (device reload) via malformed IPsec packets, ak... |
| CVE-2014-0206 | — | — | 0.4% | Jun 25, 2014 | Array index error in the aio_read_events_ring function in fs/aio.c in the Linux kernel through 3.15.1 allows local users... |
| CVE-2014-3493 | — | — | 7.3% | Jun 23, 2014 | The push_ascii function in smbd in Samba 3.6.x before 3.6.24, 4.0.x before 4.0.19, and 4.1.x before 4.1.9 allows remote ... |
| CVE-2014-0244 | — | — | 20.5% | Jun 23, 2014 | The sys_recvfrom function in nmbd in Samba 3.6.x before 3.6.24, 4.0.x before 4.0.19, and 4.1.x before 4.1.9 allows remot... |
| CVE-2014-4508 | — | — | 0.4% | Jun 23, 2014 | arch/x86/kernel/entry_32.S in the Linux kernel through 3.15.1 on 32-bit x86 platforms, when syscall auditing is enabled ... |
| CVE-2014-4171 | — | — | 0.4% | Jun 23, 2014 | mm/shmem.c in the Linux kernel through 3.15.1 does not properly implement the interaction between range notification and... |
| CVE-2014-4157 | — | — | 0.5% | Jun 23, 2014 | arch/mips/include/asm/thread_info.h in the Linux kernel before 3.14.8 on the MIPS platform does not configure _TIF_SECCO... |
| CVE-2014-4027 | — | — | 0.7% | Jun 23, 2014 | The rd_build_device_space function in drivers/target/target_core_rd.c in the Linux kernel before 3.14 does not properly ... |
| CVE-2014-4014 | — | — | 3.3% | Jun 23, 2014 | The capabilities implementation in the Linux kernel before 3.14.8 does not properly consider that namespaces are inappli... |
| CVE-2014-1739 | — | — | 1.1% | Jun 23, 2014 | The media_device_enum_entities function in drivers/media/media-device.c in the Linux kernel before 3.14.6 does not initi... |
| CVE-2014-4338 | — | — | 3.0% | Jun 22, 2014 | cups-browsed in cups-filters before 1.0.53 allows remote attackers to bypass intended access restrictions in opportunist... |
| CVE-2014-4337 | — | — | 2.9% | Jun 22, 2014 | The process_browse_data function in utils/cups-browsed.c in cups-browsed in cups-filters before 1.0.53 allows remote att... |
| CVE-2014-4336 | — | — | 1.1% | Jun 22, 2014 | The generate_local_queue function in utils/cups-browsed.c in cups-browsed in cups-filters before 1.0.53 allows remote IP... |
| CVE-2014-4509 | — | — | 0.4% | Jun 21, 2014 | The MKDQUOTESAFE function in the Fan-out driver scripts in Fan-Out Platform Services in Novell Identity Manager (aka IDM... |
| CVE-2014-3883 | — | — | 1.3% | Jun 21, 2014 | Usermin before 1.600 allows remote attackers to execute arbitrary operating-system commands via unspecified vectors rela... |
| CVE-2014-3431 | — | — | 0.2% | Jun 21, 2014 | Symantec PGP Desktop 10.x, and Encryption Desktop Professional 10.3.x before 10.3.2 MP2, on OS X uses world-writable per... |
| CVE-2014-3296 | — | — | 1.3% | Jun 21, 2014 | The XML programmatic interface (XML PI) in Cisco WebEx Meeting Server 1.5(.1.131) and earlier allows remote authenticate... |
| CVE-2014-3073 | — | — | 4.2% | Jun 21, 2014 | Unspecified vulnerability in IBM Security Access Manager (ISAM) for Mobile 8.0 and IBM Security Access Manager for Web 7... |
| CVE-2014-3053 | — | — | 1.4% | Jun 21, 2014 | The Local Management Interface (LMI) in IBM Security Access Manager (ISAM) for Mobile 8.0 with firmware 8.0.0.0 through ... |
| CVE-2014-3052 | — | — | 0.4% | Jun 21, 2014 | The reverse-proxy feature in IBM Security Access Manager (ISAM) for Web 8.0 with firmware 8.0.0.2 and 8.0.0.3 interprets... |
| CVE-2014-4507 | — | — | 2.4% | Jun 20, 2014 | Directory traversal vulnerability in Smart-Proxy in Foreman before 1.4.5 and 1.5.x before 1.5.1 allows remote attackers ... |
| CVE-2014-4506 | — | — | 0.9% | Jun 20, 2014 | Cross-site scripting (XSS) vulnerability in the Custom Meta module 6.x-1.x before 6.x-1.2 and 7.x-1.x before 7.x-1.3 for... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now