2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-10376 | — | — | 1.8% | Aug 16, 2019 | The i-recommend-this plugin before 3.7.3 for WordPress has SQL injection. |
| CVE-2014-10375 | — | — | 1.2% | Aug 14, 2019 | handle_messages in eXtl_tls.c in eXosip before 5.0.0 mishandles a negative value in a content-length header. |
| CVE-2014-10374 | — | — | 0.6% | Jul 15, 2019 | On Fitbit activity-tracker devices, certain addresses never change. According to the popets-2019-0036.pdf document, this... |
| CVE-2014-3798 | — | — | 1.9% | Jul 11, 2019 | The Windows Guest Tools in Citrix XenServer 6.2 SP1 and earlier allows remote attackers to cause a denial of service (gu... |
| CVE-2014-9699 | — | — | 1.2% | Jun 24, 2019 | The MakerBot Replicator 5G printer runs an Apache HTTP Server with directory indexing enabled. Apache logs, system logs,... |
| CVE-2014-9919 | — | — | 0.8% | May 15, 2019 | An issue was discovered in Bilboplanet 2.0. Stored XSS exists in the fullname parameter to signup.php. |
| CVE-2014-9918 | — | — | 0.8% | May 15, 2019 | An issue was discovered in Bilboplanet 2.0. Stored XSS exists in the user_id parameter to signup.php. |
| CVE-2014-9917 | — | — | 0.8% | May 15, 2019 | An issue was discovered in Bilboplanet 2.0. There is a stored XSS vulnerability when adding a tag via the user/?page=tri... |
| CVE-2014-9186 | — | — | 3.6% | Apr 8, 2019 | A file inclusion vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400.6, R41x before ... |
| CVE-2014-5436 | — | — | 3.1% | Apr 8, 2019 | A directory traversal vulnerability exists in the confd.exe module in Honeywell Experion PKS R40x before R400.6, R41x be... |
| CVE-2014-5435 | — | — | 3.5% | Apr 8, 2019 | An arbitrary memory write vulnerability exists in the dual_onsrv.exe module in Honeywell Experion PKS R40x before R400.6... |
| CVE-2014-3603 | — | — | 0.8% | Apr 4, 2019 | The (1) HttpResource and (2) FileBackedHttpResource implementations in Shibboleth Identity Provider (IdP) before 2.4.1 a... |
| CVE-2014-7198 | — | — | 0.6% | Apr 1, 2019 | OMERO before 5.0.6 has multiple CSRF vulnerabilities because the framework for OMERO's web interface lacks CSRF protecti... |
| CVE-2014-5401 | — | — | 5.0% | Mar 26, 2019 | Hospira MedNet software version 5.8 and prior uses vulnerable versions of the JBoss Enterprise Application Platform soft... |
| CVE-2014-5433 | — | — | 2.1% | Mar 26, 2019 | An unauthenticated remote attacker may be able to execute commands to view wireless account credentials that are stored ... |
| CVE-2014-5432 | — | — | 2.6% | Mar 26, 2019 | Baxter SIGMA Spectrum Infusion System version 6.05 (model 35700BAX) with wireless battery module (WBM) version 16 is rem... |
| CVE-2014-5431 | — | — | 0.4% | Mar 26, 2019 | Baxter SIGMA Spectrum Infusion System version 6.05 (model 35700BAX) with wireless battery module (WBM) version 16 contai... |
| CVE-2014-5434 | — | — | 1.6% | Mar 26, 2019 | Baxter SIGMA Spectrum Infusion System version 6.05 (model 35700BAX) with wireless battery module (WBM) version 16 has a ... |
| CVE-2014-9189 | — | — | 5.2% | Mar 25, 2019 | Multiple stack-based buffer overflow vulnerabilities were found in Honeywell Experion PKS all versions prior to R400.6, ... |
| CVE-2014-9187 | — | — | 3.6% | Mar 25, 2019 | Multiple heap-based buffer overflow vulnerabilities exist in Honeywell Experion PKS all versions prior to R400.6, all ve... |
| CVE-2014-10079 | — | — | 8.7% | Feb 23, 2019 | In Vembu StoreGrid 4.4.x, the front page of the server web interface leaks the private IP address in the "ipaddress" hid... |
| CVE-2014-10078 | — | — | 3.3% | Feb 23, 2019 | Vembu StoreGrid 4.4.x has XSS in interface/registercustomer/onlineregsuccess.php, interface/registerreseller/onlineregfa... |
| CVE-2014-1000000 | — | — | — | Feb 19, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2014-10077 | — | — | 3.4% | Nov 6, 2018 | Hash#slice in lib/i18n/core_ext/hash.rb in the i18n gem before 0.8.0 for Ruby allows remote attackers to cause a denial ... |
| CVE-2014-10076 | — | — | 2.4% | Oct 5, 2018 | The wp-db-backup plugin 2.2.4 for WordPress relies on a five-character string for access control, which makes it easier ... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now