2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0344 | — | — | 5.5% | Mar 29, 2014 | Properties.do in ZOHO ManageEngine OpStor before build 8500 does not properly check privilege levels, which allows remot... |
| CVE-2014-2131 | — | — | 0.7% | Mar 29, 2014 | The packet driver in Cisco IOS allows remote attackers to cause a denial of service (device reload) via a series of (1) ... |
| CVE-2014-1645 | — | — | 1.4% | Mar 29, 2014 | SQL injection vulnerability in forcepasswd.do in the management GUI in Symantec LiveUpdate Administrator (LUA) 2.x befor... |
| CVE-2014-1644 | — | — | 2.6% | Mar 29, 2014 | The forgotten-password feature in forcepasswd.do in the management GUI in Symantec LiveUpdate Administrator (LUA) 2.x be... |
| CVE-2014-0880 | — | — | 1.9% | Mar 29, 2014 | IBM SAN Volume Controller; Storwize V3500, V3700, V5000, and V7000; and Flex System V7000 with software 6.3 and 6.4 befo... |
| CVE-2014-2668 | — | — | 22.1% | Mar 28, 2014 | Apache CouchDB 1.5.0 and earlier allows remote attackers to cause a denial of service (CPU and memory consumption) via t... |
| CVE-2014-2599 | — | — | 0.4% | Mar 28, 2014 | The HVMOP_set_mem_access HVM control operations in Xen 4.1.x for 32-bit and 4.1.x through 4.4.x for 64-bit allow local g... |
| CVE-2014-2525 | — | — | 9.2% | Mar 28, 2014 | Heap-based buffer overflow in the yaml_parser_scan_uri_escapes function in LibYAML before 0.1.6 allows context-dependent... |
| CVE-2014-0133 | — | — | 9.3% | Mar 28, 2014 | Heap-based buffer overflow in the SPDY implementation in nginx 1.3.15 before 1.4.7 and 1.5.x before 1.5.12 allows remote... |
| CVE-2014-2118 | — | — | 1.8% | Mar 27, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in dashboard-related HTML documents in Cisco Prime Security Manager ... |
| CVE-2014-2113 | — | — | 2.0% | Mar 27, 2014 | Cisco IOS 15.1 through 15.3 and IOS XE 3.3 and 3.5 before 3.5.2E; 3.7 before 3.7.5S; and 3.8, 3.9, and 3.10 before 3.10.... |
| CVE-2014-2112 | — | — | 2.0% | Mar 27, 2014 | The SSL VPN (aka WebVPN) feature in Cisco IOS 15.1 through 15.4 allows remote attackers to cause a denial of service (me... |
| CVE-2014-2111 | — | — | 1.7% | Mar 27, 2014 | The Application Layer Gateway (ALG) module in Cisco IOS 12.2 through 12.4 and 15.0 through 15.4, when NAT is used, allow... |
| CVE-2014-2109 | — | — | 2.2% | Mar 27, 2014 | The TCP Input module in Cisco IOS 12.2 through 12.4 and 15.0 through 15.4, when NAT is used, allows remote attackers to ... |
| CVE-2014-2108 | — | — | 2.2% | Mar 27, 2014 | Cisco IOS 12.2 and 15.0 through 15.3 and IOS XE 3.2 through 3.7 before 3.7.5S and 3.8 through 3.10 before 3.10.1S allow ... |
| CVE-2014-2107 | — | — | 1.7% | Mar 27, 2014 | Cisco IOS 12.2 and 15.0 through 15.3, when used with the Kailash FPGA before 2.6 on RSP720-3C-10GE and RSP720-3CXL-10GE ... |
| CVE-2014-2106 | — | — | 2.4% | Mar 27, 2014 | Cisco IOS 15.3M before 15.3(3)M2 and IOS XE 3.10.xS before 3.10.2S allow remote attackers to cause a denial of service (... |
| CVE-2014-5880 | — | — | — | Mar 27, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-5880. Reason: This candidate is a duplicate of ... |
| CVE-2014-5795 | — | — | — | Mar 27, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-5795. Reason: This candidate is a duplicate of ... |
| CVE-2014-2326 | — | — | 3.2% | Mar 27, 2014 | Cross-site scripting (XSS) vulnerability in cdef.php in Cacti 0.8.7g, 0.8.8b, and earlier allows remote attackers to inj... |
| CVE-2014-0089 | — | — | 1.9% | Mar 27, 2014 | Cross-site scripting (XSS) vulnerability in app/views/common/500.html.erb in Foreman 1.4.x before 1.4.2 allows remote au... |
| CVE-2014-0623 | — | — | 1.0% | Mar 27, 2014 | Cross-site scripting (XSS) vulnerability in the Self-Service Console in EMC RSA Authentication Manager 7.1 before SP4 P3... |
| CVE-2014-0512 | — | — | 4.8% | Mar 27, 2014 | Adobe Reader 11.0.06 allows attackers to bypass a PDF sandbox protection mechanism via unspecified vectors, as demonstra... |
| CVE-2014-0511 | — | — | 9.2% | Mar 27, 2014 | Heap-based buffer overflow in Adobe Reader 11.0.06 allows remote attackers to execute arbitrary code via unspecified vec... |
| CVE-2014-0510 | — | — | 8.5% | Mar 27, 2014 | Heap-based buffer overflow in Adobe Flash Player 12.0.0.77 allows remote attackers to execute arbitrary code and bypass ... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now