2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0131 | — | — | 0.7% | Mar 24, 2014 | Use-after-free vulnerability in the skb_segment function in net/core/skbuff.c in the Linux kernel through 3.13.6 allows ... |
| CVE-2014-2589 | — | — | 2.4% | Mar 24, 2014 | Cross-site scripting (XSS) vulnerability in the Dashboard Backend service (stats/dashboard.jsp) in SonicWall Network Sec... |
| CVE-2014-2588 | — | — | 7.3% | Mar 24, 2014 | Directory traversal vulnerability in servlet/downloadReport in McAfee Asset Manager 6.6 allows remote authenticated user... |
| CVE-2014-2587 | — | — | 3.1% | Mar 24, 2014 | SQL injection vulnerability in jsp/reports/ReportsAudit.jsp in McAfee Asset Manager 6.6 allows remote authenticated user... |
| CVE-2014-2586 | — | — | 3.2% | Mar 24, 2014 | Cross-site scripting (XSS) vulnerability in the login audit form in McAfee Cloud Single Sign On (SSO) allows remote atta... |
| CVE-2014-2585 | — | — | 1.3% | Mar 24, 2014 | ownCloud before 5.0.15 and 6.x before 6.0.2, when the file_external app is enabled, allows remote authenticated users to... |
| CVE-2014-2057 | — | — | 1.0% | Mar 24, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in ownCloud before 6.0.2 allow remote attackers to inject arbitrary ... |
| CVE-2014-0016 | — | — | 2.2% | Mar 24, 2014 | stunnel before 5.00, when using fork threading, does not properly update the state of the OpenSSL pseudo-random number g... |
| CVE-2014-2572 | — | — | 1.1% | Mar 24, 2014 | mod/assign/externallib.php in Moodle 2.6.x before 2.6.2 does not properly handle assignment web-service parameters, whic... |
| CVE-2014-2571 | — | — | 1.0% | Mar 24, 2014 | Cross-site scripting (XSS) vulnerability in the quiz_question_tostring function in mod/quiz/editlib.php in Moodle throug... |
| CVE-2014-2258 | — | — | 4.6% | Mar 24, 2014 | Siemens SIMATIC S7-1200 CPU PLC devices with firmware before 4.0 allow remote attackers to cause a denial of service (de... |
| CVE-2014-2254 | — | — | 4.6% | Mar 24, 2014 | Siemens SIMATIC S7-1200 CPU PLC devices with firmware before 4.0 allow remote attackers to cause a denial of service (de... |
| CVE-2014-2256 | — | — | 3.6% | Mar 24, 2014 | Siemens SIMATIC S7-1200 CPU PLC devices with firmware before 4.0 allow remote attackers to cause a denial of service (de... |
| CVE-2014-2252 | — | — | 1.2% | Mar 24, 2014 | Siemens SIMATIC S7-1200 CPU PLC devices with firmware before 4.0 allow remote attackers to cause a denial of service (de... |
| CVE-2014-2250 | — | — | 3.1% | Mar 24, 2014 | The random-number generator on Siemens SIMATIC S7-1200 CPU PLC devices with firmware before 4.0 does not have sufficient... |
| CVE-2014-0127 | — | — | 1.5% | Mar 24, 2014 | The time-validation implementation in (1) mod/feedback/complete.php and (2) mod/feedback/complete_guest.php in Moodle th... |
| CVE-2014-0129 | — | — | 1.7% | Mar 24, 2014 | badges/mybadges.php in Moodle 2.5.x before 2.5.5 and 2.6.x before 2.6.2 does not properly track the user to whom a badge... |
| CVE-2014-0125 | — | — | 1.9% | Mar 24, 2014 | repository/alfresco/lib.php in Moodle through 2.3.11, 2.4.x before 2.4.9, 2.5.x before 2.5.5, and 2.6.x before 2.6.2 pla... |
| CVE-2014-0126 | — | — | 1.0% | Mar 24, 2014 | Cross-site request forgery (CSRF) vulnerability in enrol/imsenterprise/importnow.php in Moodle through 2.3.11, 2.4.x bef... |
| CVE-2014-0124 | — | — | 1.7% | Mar 24, 2014 | The identity-reporting implementations in mod/forum/renderer.php and mod/quiz/override_form.php in Moodle through 2.3.11... |
| CVE-2014-0123 | — | — | 1.5% | Mar 24, 2014 | The wiki subsystem in Moodle through 2.3.11, 2.4.x before 2.4.9, 2.5.x before 2.5.5, and 2.6.x before 2.6.2 does not pro... |
| CVE-2014-0122 | — | — | 1.0% | Mar 24, 2014 | mod/chat/chat_ajax.php in Moodle through 2.3.11, 2.4.x before 2.4.9, 2.5.x before 2.5.5, and 2.6.x before 2.6.2 does not... |
| CVE-2014-2497 | — | — | 22.3% | Mar 21, 2014 | The gdImageCreateFromXpm function in gdxpm.c in libgd, as used in PHP 5.4.26 and earlier, allows remote attackers to cau... |
| CVE-2014-2276 | — | — | 2.1% | Mar 21, 2014 | The FileUploadController servlet in EMC Connectrix Manager Converged Network Edition (CMCNE) before 12.1.5 does not prop... |
| CVE-2014-2567 | — | — | 1.0% | Mar 21, 2014 | The OpenConnectionTask::handleStateHelper function in Imap/Tasks/OpenConnectionTask.cpp in Trojita before 0.4.1 allows m... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now