2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0506 | — | — | 7.6% | Mar 27, 2014 | Use-after-free vulnerability in Adobe Flash Player before 11.7.700.275 and 11.8.x through 13.0.x before 13.0.0.182 on Wi... |
| CVE-2014-1303 | — | — | 34.8% | Mar 26, 2014 | Heap-based buffer overflow in Apple Safari 7.0.2 allows remote attackers to execute arbitrary code and bypass a sandbox ... |
| CVE-2014-1300 | — | — | 5.5% | Mar 26, 2014 | Unspecified vulnerability in Apple Safari 7.0.2 on OS X allows remote attackers to execute arbitrary code with root priv... |
| CVE-2014-0055 | — | — | 0.6% | Mar 26, 2014 | The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsystem in the Linux kernel package before 2.6.32-431... |
| CVE-2014-1828 | — | — | 1.2% | Mar 26, 2014 | The iThoughts web server in the iThoughtsHD app 4.19 for iOS on iPad devices allows remote attackers to cause a denial o... |
| CVE-2014-1827 | — | — | 1.0% | Mar 26, 2014 | The iThoughtsHD app 4.19 for iOS on iPad devices, when the WiFi Transfer feature is used, allows remote attackers to upl... |
| CVE-2014-1826 | — | — | 0.9% | Mar 26, 2014 | Cross-site scripting (XSS) vulnerability in the iThoughtsHD app 4.19 for iOS on iPad devices, when the WiFi Transfer fea... |
| CVE-2014-0904 | — | — | 3.1% | Mar 26, 2014 | The update process in IBM Security AppScan Standard 7.9 through 8.8 does not require integrity checks of downloaded file... |
| CVE-2014-0848 | — | — | 0.9% | Mar 26, 2014 | The (1) ssl.conf and (2) httpd.conf files in the Apache HTTP Server component in IBM Netezza Performance Portal 2.0 befo... |
| CVE-2014-0887 | — | — | 1.6% | Mar 25, 2014 | The Admin Web UI in IBM Lotus Protector for Mail Security 2.8.x before 2.8.1-22905 allows remote authenticated users to ... |
| CVE-2014-0886 | — | — | 1.6% | Mar 25, 2014 | The Admin Web UI in IBM Lotus Protector for Mail Security 2.8.x before 2.8.1-22905 allows remote authenticated users to ... |
| CVE-2014-0885 | — | — | 0.6% | Mar 25, 2014 | Cross-site request forgery (CSRF) vulnerability in the Admin Web UI in IBM Lotus Protector for Mail Security 2.8.x befor... |
| CVE-2014-0884 | — | — | 0.8% | Mar 25, 2014 | Cross-site scripting (XSS) vulnerability in the Admin Web UI in IBM Lotus Protector for Mail Security 2.8.x before 2.8.1... |
| CVE-2014-0343 | — | — | 0.6% | Mar 25, 2014 | The web interface on Virtual Access GW6110A routers with software 9.00 before 9.09.27, 9.50 before 9.50.21, and 10.00 be... |
| CVE-2014-2538 | — | — | 2.2% | Mar 25, 2014 | Cross-site scripting (XSS) vulnerability in lib/rack/ssl.rb in the rack-ssl gem before 1.4.0 for Ruby allows remote atta... |
| CVE-2014-2016 | — | — | 1.5% | Mar 25, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in OXID eShop Professional and Community Edition 4.6.8 and earlier, ... |
| CVE-2014-2573 | — | — | 0.7% | Mar 25, 2014 | The VMWare driver in OpenStack Compute (Nova) 2013.2 through 2013.2.2 does not properly put VMs into RESCUE status, whic... |
| CVE-2014-2386 | — | — | 2.7% | Mar 25, 2014 | Multiple off-by-one errors in Icinga, possibly 1.10.2 and earlier, allow remote attackers to cause a denial of service (... |
| CVE-2014-1515 | — | — | 0.3% | Mar 25, 2014 | Mozilla Firefox before 28.0.1 on Android processes a file: URL by copying a local file onto the SD card, which allows at... |
| CVE-2014-1492 | — | — | 1.8% | Mar 25, 2014 | The cert_TestHostName function in lib/certdb/certdb.c in the certificate-checking implementation in Mozilla Network Secu... |
| CVE-2014-0628 | — | — | 1.1% | Mar 25, 2014 | The server in EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.5 does not properly process certificate chains, w... |
| CVE-2014-0076 | — | — | 0.9% | Mar 25, 2014 | The Montgomery ladder implementation in OpenSSL through 1.0.0l does not ensure that certain swap operations have a const... |
| CVE-2014-2284 | — | — | 4.4% | Mar 24, 2014 | The Linux implementation of the ICMP-MIB in Net-SNMP 5.5 before 5.5.2.1, 5.6.x before 5.6.2.1, and 5.7.x before 5.7.2.1 ... |
| CVE-2014-2568 | — | — | 1.0% | Mar 24, 2014 | Use-after-free vulnerability in the nfqnl_zcopy function in net/netfilter/nfnetlink_queue_core.c in the Linux kernel thr... |
| CVE-2014-2523 | — | — | 10.4% | Mar 24, 2014 | net/netfilter/nf_conntrack_proto_dccp.c in the Linux kernel through 3.13.6 uses a DCCP header pointer incorrectly, which... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now