2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0077 | — | — | 0.8% | Apr 14, 2014 | drivers/vhost/net.c in the Linux kernel before 3.13.10, when mergeable buffers are disabled, does not properly validate ... |
| CVE-2014-2852 | — | — | 1.3% | Apr 14, 2014 | OpenAFS before 1.6.7 delays the listen thread when an RXS_CheckResponse fails, which allows remote attackers to cause a ... |
| CVE-2014-2714 | — | — | 2.3% | Apr 14, 2014 | The Enhanced Web Filtering (EWF) in Juniper Junos before 10.4R15, 11.4 before 11.4R9, 12.1 before 12.1R7, 12.1X44 before... |
| CVE-2014-2713 | — | — | 1.2% | Apr 14, 2014 | Juniper Junos before 11.4R11, 12.1 before 12.1R9, 12.2 before 12.2R7, 12.3R4 before 12.3R4-S3, 13.1 before 13.1R4, 13.2 ... |
| CVE-2014-2712 | — | — | 1.8% | Apr 14, 2014 | Cross-site scripting (XSS) vulnerability in J-Web in Juniper Junos before 10.0S25, 10.4 before 10.4R10, 11.4 before 11.4... |
| CVE-2014-2711 | — | — | 1.8% | Apr 14, 2014 | Cross-site scripting (XSS) vulnerability in J-Web in Juniper Junos before 11.4R11, 11.4X27 before 11.4X27.62 (BBE), 12.1... |
| CVE-2014-0614 | — | — | 1.5% | Apr 14, 2014 | Juniper Junos 13.2 before 13.2R3 and 13.3 before 13.3R1, when PIM is enabled, allows remote attackers to cause a denial ... |
| CVE-2014-0612 | — | — | 1.6% | Apr 14, 2014 | Unspecified vulnerability in Juniper Junos before 11.4R10-S1, before 11.4R11, 12.1X44 before 12.1X44-D26, 12.1X44 before... |
| CVE-2014-0159 | — | — | 2.2% | Apr 14, 2014 | Buffer overflow in the GetStatistics64 remote procedure call (RPC) in OpenAFS 1.4.8 before 1.6.7 allows remote attackers... |
| CVE-2014-0128 | — | — | 32.6% | Apr 14, 2014 | Squid 3.1 before 3.3.12 and 3.4 before 3.4.4, when SSL-Bump is enabled, allows remote attackers to cause a denial of ser... |
| CVE-2014-2389 | — | — | 5.7% | Apr 12, 2014 | Stack-based buffer overflow in a certain decryption function in qconnDoor on BlackBerry Z10 devices with software 10.1.0... |
| CVE-2014-2142 | — | — | 1.8% | Apr 12, 2014 | Cisco ONS 15454 controller cards with software 10.0 and earlier allow remote attackers to cause a denial of service (car... |
| CVE-2014-2140 | — | — | 1.8% | Apr 12, 2014 | Cisco ONS 15454 controller cards with software 9.6 and earlier allow remote attackers to cause a denial of service (card... |
| CVE-2014-2139 | — | — | 1.7% | Apr 12, 2014 | Cisco ONS 15454 controller cards with software 9.6 and earlier allow remote attackers to cause a denial of service (flas... |
| CVE-2014-0787 | — | — | 16.0% | Apr 12, 2014 | Stack-based buffer overflow in WellinTech KingSCADA before 3.1.2.13 allows remote attackers to execute arbitrary code vi... |
| CVE-2014-0773 | — | — | 2.5% | Apr 12, 2014 | The BWOCXRUN.BwocxrunCtrl.1 control contains a method named “CreateProcess.” This method contains validation to ensure ... |
| CVE-2014-0772 | — | — | 1.4% | Apr 12, 2014 | The BWOCXRUN.BwocxrunCtrl.1 control contains a method named OpenUrlToBufferTimeout. This method takes a URL as a parame... |
| CVE-2014-0771 | — | — | 1.4% | Apr 12, 2014 | The BWOCXRUN.BwocxrunCtrl.1 control contains a method named “OpenUrlToBuffer.” This method takes a URL as a parameter a... |
| CVE-2014-0770 | — | — | 2.6% | Apr 12, 2014 | By providing an overly long string to the UserName parameter, an attacker may be able to overflow the static stack buff... |
| CVE-2014-0768 | — | — | 2.7% | Apr 12, 2014 | An attacker may pass an overly long value from the AccessCode2 argument to the control to overflow the static stack buf... |
| CVE-2014-0767 | — | — | 2.7% | Apr 12, 2014 | An attacker may exploit this vulnerability by passing an overly long value from the AccessCode argument to the control.... |
| CVE-2014-0766 | — | — | 2.7% | Apr 12, 2014 | An attacker can exploit this vulnerability by copying an overly long NodeName2 argument into a statically sized buffer ... |
| CVE-2014-0765 | — | — | 2.7% | Apr 12, 2014 | To exploit this vulnerability, the attacker sends data from the GotoCmd argument to control. If the value of the argume... |
| CVE-2014-0764 | — | — | 2.7% | Apr 12, 2014 | By providing an overly long string to the NodeName parameter, an attacker may be able to overflow the static stack buff... |
| CVE-2014-0763 | — | — | 19.0% | Apr 12, 2014 | An attacker using SQL injection may use arguments to construct queries without proper sanitization. The DBVisitor.dll i... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now