2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-3325 | — | — | 1.4% | Jul 19, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in Cisco Unified Customer Voice Portal (CVP) allow remote attackers ... |
| CVE-2014-2519 | — | — | 1.7% | Jul 19, 2014 | The default configuration of EMC RecoverPoint Appliance (RPA) 4.1 before 4.1.0.1 does not enable a firewall, which allow... |
| CVE-2014-3064 | — | — | 1.1% | Jul 19, 2014 | The GDS component in IBM InfoSphere Master Data Management - Collaborative Edition 10.x and 11.x before 11.0 FP4 and Inf... |
| CVE-2014-3045 | — | — | 0.3% | Jul 19, 2014 | IBM Scale Out Network Attached Storage (SONAS) 1.3.x and 1.4.x before 1.4.3.3 places an administrative password in the s... |
| CVE-2014-3043 | — | — | 1.5% | Jul 19, 2014 | IBM Storwize V7000 Unified 1.3.x and 1.4.x before 1.4.3.3 allows remote authenticated users to gain privileges by levera... |
| CVE-2014-2368 | — | — | 1.7% | Jul 19, 2014 | The BrowseFolder method in the bwocxrun ActiveX control in Advantech WebAccess before 7.2 allows remote attackers to rea... |
| CVE-2014-2367 | — | — | 1.5% | Jul 19, 2014 | The ChkCookie subroutine in an ActiveX control in broadweb/include/gChkCook.asp in Advantech WebAccess before 7.2 allows... |
| CVE-2014-2366 | — | — | 1.3% | Jul 19, 2014 | upAdminPg.asp in Advantech WebAccess before 7.2 allows remote authenticated users to discover credentials by reading HTM... |
| CVE-2014-2365 | — | — | 1.6% | Jul 19, 2014 | Unspecified vulnerability in Advantech WebAccess before 7.2 allows remote authenticated users to create or delete arbitr... |
| CVE-2014-2364 | — | — | 61.4% | Jul 19, 2014 | Multiple stack-based buffer overflows in Advantech WebAccess before 7.2 allow remote attackers to execute arbitrary code... |
| CVE-2014-0970 | — | — | 0.8% | Jul 19, 2014 | The GDS component in IBM InfoSphere Master Data Management - Collaborative Edition 10.x and 11.x before 11.0 FP4 and Inf... |
| CVE-2014-0968 | — | — | 0.8% | Jul 19, 2014 | Cross-site scripting (XSS) vulnerability in the GDS component in IBM InfoSphere Master Data Management - Collaborative E... |
| CVE-2014-0967 | — | — | 0.8% | Jul 19, 2014 | Cross-site scripting (XSS) vulnerability in the GDS component in IBM InfoSphere Master Data Management - Collaborative E... |
| CVE-2014-3323 | — | — | 2.3% | Jul 18, 2014 | Directory traversal vulnerability in Cisco Unified Contact Center Enterprise allows remote authenticated users to read a... |
| CVE-2014-3321 | — | — | 0.6% | Jul 18, 2014 | Cisco IOS XR 4.3.4 and earlier on ASR 9000 devices, when bridge-group virtual interface (BVI) routing is enabled, allows... |
| CVE-2014-3320 | — | — | 2.2% | Jul 18, 2014 | Multiple open redirect vulnerabilities in the admin web interface in the web framework in Cisco Unified Communications D... |
| CVE-2014-3306 | — | — | 7.0% | Jul 18, 2014 | The web server on Cisco DPC3010, DPC3212, DPC3825, DPC3925, DPQ3925, EPC3010, EPC3212, EPC3825, and EPC3925 Wireless Res... |
| CVE-2014-2623 | — | — | 89.4% | Jul 18, 2014 | Unspecified vulnerability in HP Storage Data Protector 8.x allows remote attackers to execute arbitrary code via unknown... |
| CVE-2014-0957 | — | — | 1.2% | Jul 18, 2014 | Cross-site scripting (XSS) vulnerability in IBM Business Process Manager 7.5 through 8.5.5, and WebSphere Lombardi Editi... |
| CVE-2014-4271 | — | — | 2.9% | Jul 17, 2014 | Unspecified vulnerability in the Hyperion Essbase component in Oracle Hyperion 11.1.2.2 and 11.1.2.3 allows remote attac... |
| CVE-2014-4270 | — | — | 1.9% | Jul 17, 2014 | Unspecified vulnerability in the Hyperion Common Admin component in Oracle Hyperion 11.1.2.2 and 11.1.2.3 allows remote ... |
| CVE-2014-4269 | — | — | 1.9% | Jul 17, 2014 | Unspecified vulnerability in the Hyperion Common Admin component in Oracle Hyperion 11.1.2.2 and 11.1.2.3 allows remote ... |
| CVE-2014-4268 | — | — | 4.1% | Jul 17, 2014 | Unspecified vulnerability in Oracle Java SE 5.0u65, 6u75, 7u60, and 8u5 allows remote attackers to affect confidentialit... |
| CVE-2014-4267 | — | — | 3.2% | Jul 17, 2014 | Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.0.2.0, 10.3.6.0, 12.1.1... |
| CVE-2014-4266 | — | — | 4.1% | Jul 17, 2014 | Unspecified vulnerability in Oracle Java SE 7u60 and 8u5 allows remote attackers to affect integrity via unknown vectors... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now