2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

CVE IDSeverityCVSSDescription
CVE-2014-3271The DHCPv6 implementation in Cisco IOS XR allows remote attackers to cause a denial of service (device crash) via a malf...
CVE-2014-3270The DHCPv6 implementation in Cisco IOS XR allows remote attackers to cause a denial of service (process hang) via a malf...
CVE-2014-3269The SNMP module in Cisco IOS XE 3.5E allows remote authenticated users to cause a denial of service (device reload) by p...
CVE-2014-3268Cisco IOS 15.2(4)M4 on Cisco Unified Border Element (CUBE) devices allows remote attackers to cause a denial of service ...
CVE-2014-3265Cross-site scripting (XSS) vulnerability in the Auto Update Server (AUS) web framework in Cisco Security Manager 4.2 and...
CVE-2014-3264Cisco Adaptive Security Appliance (ASA) Software 9.1(.5) and earlier allows remote authenticated users to cause a denial...
CVE-2014-2351SQL injection vulnerability in the LiveData service in CSWorks before 2.5.5233.0 allows remote attackers to execute arbi...
CVE-2014-2199meetinginfo.do in Cisco WebEx Event Center, WebEx Meeting Center, WebEx Sales Center, WebEx Training Center, WebEx Meeti...
CVE-2014-2195Cisco AsyncOS on Email Security Appliance (ESA) and Content Security Management Appliance (SMA) devices, when Active Dir...
CVE-2014-2194system/egain/chat/entrypoint in Cisco Unified Web and E-mail Interaction Manager 9.0(2) allows remote attackers to have ...
CVE-2014-2193Cisco Unified Web and E-Mail Interaction Manager places session identifiers in GET requests, which allows remote attacke...
CVE-2014-2192Cross-site scripting (XSS) vulnerability in Cisco Unified Web and E-mail Interaction Manager 9.0(2) allows remote attack...
CVE-2014-3787SAP NetWeaver 7.20 and earlier allows remote attackers to read arbitrary SAP Central User Administration (SAP CUA) table...
CVE-2014-3735ir41_32.ax 4.51.16.3 for Intel Indeo Video 4.5 allows remote attackers to cause a denial of service (crash) via a crafte...
CVE-2014-3717Xen 4.4.x does not properly validate the load address for 64-bit ARM guest kernels, which allows local users to read sys...
CVE-2014-3716Xen 4.4.x does not properly check alignment, which allows local users to cause a denial of service (crash) via an unspec...
CVE-2014-3715Buffer overflow in Xen 4.4.x allows local users to read system memory or cause a denial of service (crash) via a crafted...
CVE-2014-3714The ARM image loading functionality in Xen 4.4.x does not properly validate kernel length, which allows local users to r...
CVE-2014-3411Unspecified vulnerability in the NSM XDB service in Juniper NSM before 2012.2R8 allows remote attackers to execute arbit...
CVE-2014-1402The default configuration for bccache.FileSystemBytecodeCache in Jinja2 before 2.7.2 does not properly create temporary ...
CVE-2014-0012FileSystemBytecodeCache in Jinja2 2.7.2 does not properly create temporary directories, which allows local users to gain...
CVE-2014-1347Apple iTunes before 11.2.1 on OS X sets world-writable permissions for /Users and /Users/Shared during reboots, which al...
CVE-2014-3453Eval injection vulnerability in the flag_import_form_validate function in includes/flag.export.inc in the Flag module 7....
CVE-2014-2085Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-2084. Reason: This issue was MERGED into CVE-201...
CVE-2014-2084Skybox View Appliances with ISO 6.3.33-2.14, 6.3.31-2.14, 6.4.42-2.54, 6.4.45-2.56, and 6.4.46-2.57 does not properly re...

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now