2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0012 | — | — | 0.4% | May 19, 2014 | FileSystemBytecodeCache in Jinja2 2.7.2 does not properly create temporary directories, which allows local users to gain... |
| CVE-2014-1347 | — | — | 0.4% | May 18, 2014 | Apple iTunes before 11.2.1 on OS X sets world-writable permissions for /Users and /Users/Shared during reboots, which al... |
| CVE-2014-3453 | — | — | 2.1% | May 17, 2014 | Eval injection vulnerability in the flag_import_form_validate function in includes/flag.export.inc in the Flag module 7.... |
| CVE-2014-2085 | — | — | — | May 17, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-2084. Reason: This issue was MERGED into CVE-201... |
| CVE-2014-2084 | — | — | 4.4% | May 17, 2014 | Skybox View Appliances with ISO 6.3.33-2.14, 6.3.31-2.14, 6.4.42-2.54, 6.4.45-2.56, and 6.4.46-2.57 does not properly re... |
| CVE-2014-3742 | — | — | 2.4% | May 16, 2014 | The hapi server framework 2.0.x and 2.1.x before 2.2.0 for Node.js allows remote attackers to cause a denial of service ... |
| CVE-2014-3730 | — | — | 3.1% | May 16, 2014 | The django.util.http.is_safe_url function in Django 1.4 before 1.4.13, 1.5 before 1.5.8, 1.6 before 1.6.5, and 1.7 befor... |
| CVE-2014-3452 | — | — | 1.7% | May 16, 2014 | Filters\LAV\avfilter-lav-4.dll in K-lite Codec 10.4.5 and earlier allows remote attackers to cause a denial of service (... |
| CVE-2014-1613 | — | — | 2.3% | May 16, 2014 | Dotclear before 2.6.2 allows remote attackers to execute arbitrary PHP code via a serialized object in the dc_passwd coo... |
| CVE-2014-1418 | — | — | 2.5% | May 16, 2014 | Django 1.4 before 1.4.13, 1.5 before 1.5.8, 1.6 before 1.6.5, and 1.7 before 1.7b4 does not properly include the (1) Var... |
| CVE-2014-3761 | — | — | 1.0% | May 16, 2014 | Cross-site scripting (XSS) vulnerability in D-Link DAP 1150 with firmware 1.2.94 allows remote attackers to inject arbit... |
| CVE-2014-3760 | — | — | 0.7% | May 16, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in D-Link DAP 1150 with firmware 1.2.94 allow remote attacker... |
| CVE-2014-3759 | — | — | 1.3% | May 16, 2014 | Multiple SQL injection vulnerabilities in the BibTex Publications (si_bibtex) extension 0.2.3 for TYPO3 allow remote att... |
| CVE-2014-3758 | — | — | 1.2% | May 16, 2014 | Cross-site scripting (XSS) vulnerability in the BibTex Publications (si_bibtex) extension 0.2.3 for TYPO3 allows remote ... |
| CVE-2014-0749 | — | — | 17.5% | May 16, 2014 | Stack-based buffer overflow in lib/Libdis/disrsi_.c in Terascale Open-Source Resource and Queue Manager (aka TORQUE Reso... |
| CVE-2014-3750 | — | — | 0.6% | May 16, 2014 | The Bilyoner application before 2.3.1 for Android and before 4.6.2 for iOS does not verify X.509 certificates from SSL s... |
| CVE-2014-3263 | — | — | 1.8% | May 16, 2014 | The ScanSafe module in Cisco IOS 15.3(3)M allows remote attackers to cause a denial of service (device reload) via HTTPS... |
| CVE-2014-3262 | — | — | 1.6% | May 16, 2014 | The Locator/ID Separation Protocol (LISP) implementation in Cisco IOS 15.3(3)S and earlier and IOS XE does not properly ... |
| CVE-2014-1649 | — | — | 42.3% | May 16, 2014 | The server in Symantec Workspace Streaming (SWS) before 7.5.0.749 allows remote attackers to access files and functional... |
| CVE-2014-0964 | — | — | 2.7% | May 16, 2014 | IBM WebSphere Application Server (WAS) 6.1.0.0 through 6.1.0.47 and 6.0.2.0 through 6.0.2.43 allows remote attackers to ... |
| CVE-2014-0933 | — | — | 0.6% | May 16, 2014 | Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere Information Server Metadata Workbench 8.1 through 9.1 ... |
| CVE-2014-0918 | — | — | 1.8% | May 16, 2014 | Directory traversal vulnerability in IBM Eclipse Help System (IEHS) in IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, ... |
| CVE-2014-0917 | — | — | 1.2% | May 16, 2014 | Cross-site scripting (XSS) vulnerability in IBM Eclipse Help System (IEHS) in IBM WebSphere Portal 6.1.0 through 6.1.0.6... |
| CVE-2014-0782 | — | — | 56.8% | May 16, 2014 | Stack-based buffer overflow in BKESimmgr.exe in the Expanded Test Functions package in Yokogawa CENTUM CS 1000, CENTUM C... |
| CVE-2014-0643 | — | — | 2.4% | May 16, 2014 | EMC RSA NetWitness before 9.8.5.19 and RSA Security Analytics before 10.2.4 and 10.3.x before 10.3.2, when Kerberos PAM ... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now