2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0879 | — | — | 3.5% | Mar 21, 2014 | Stack-based buffer overflow in the Taskmaster Capture ActiveX control in IBM Datacap Taskmaster Capture 8.0.1, and 8.1 b... |
| CVE-2014-0829 | — | — | 1.4% | Mar 21, 2014 | Multiple buffer overflows in IBM Rational ClearCase 7.x before 7.1.2.13, 8.0.0.x before 8.0.0.10, and 8.0.1.x before 8.0... |
| CVE-2014-0003 | — | — | 7.3% | Mar 21, 2014 | The XSLT component in Apache Camel 2.11.x before 2.11.4, 2.12.x before 2.12.3, and possibly earlier versions allows remo... |
| CVE-2014-0002 | — | — | 32.5% | Mar 21, 2014 | The XSLT component in Apache Camel before 2.11.4 and 2.12.x before 2.12.3 allows remote attackers to read arbitrary file... |
| CVE-2014-2124 | — | — | 1.9% | Mar 21, 2014 | Cisco IOS 15.1(2)SY3 and earlier, when used with Supervisor Engine 2T (aka Sup2T) on Catalyst 6500 devices, allows remot... |
| CVE-2014-2119 | — | — | 2.7% | Mar 21, 2014 | The End User Safelist/Blocklist (aka SLBL) service in Cisco AsyncOS Software for Email Security Appliance (ESA) before 7... |
| CVE-2014-0708 | — | — | 1.2% | Mar 21, 2014 | WebEx Meeting Center in Cisco WebEx Business Suite does not properly compose URLs for HTTP GET requests, which allows re... |
| CVE-2014-2280 | — | — | 1.9% | Mar 20, 2014 | Cross-site scripting (XSS) vulnerability in the search feature in SeedDMS (formerly LetoDMS and MyDMS) before 4.3.4 allo... |
| CVE-2014-2219 | — | — | 1.2% | Mar 20, 2014 | Cross-site scripting (XSS) vulnerability in whizzywig/wb.php in CMSimple Classic 3.54 and earlier, possibly as downloade... |
| CVE-2014-2077 | — | — | 0.9% | Mar 20, 2014 | Cross-site scripting (XSS) vulnerability in the frontend in Open-Xchange (OX) AppSuite 7.4.1 before 7.4.1-rev10 and 7.4.... |
| CVE-2014-1904 | — | — | 3.3% | Mar 20, 2014 | Cross-site scripting (XSS) vulnerability in web/servlet/tags/form/FormTag.java in Spring MVC in Spring Framework 3.0.0 b... |
| CVE-2014-1609 | — | — | 3.1% | Mar 20, 2014 | Multiple SQL injection vulnerabilities in MantisBT before 1.2.16 allow remote attackers to execute arbitrary SQL command... |
| CVE-2014-1971 | — | — | 1.2% | Mar 20, 2014 | Cross-site scripting (XSS) vulnerability in Silex before 2.0.0 allows remote attackers to inject arbitrary web script or... |
| CVE-2014-1970 | — | — | 1.4% | Mar 20, 2014 | Directory traversal vulnerability in the ES File Explorer File Manager application before 3.0.4 for Android allows remot... |
| CVE-2014-2339 | — | — | 2.1% | Mar 19, 2014 | Multiple SQL injection vulnerabilities in bbs/ajax.autosave.php in GNUboard 5.x and possibly earlier allow remote authen... |
| CVE-2014-1979 | — | — | 1.7% | Mar 19, 2014 | The NTT DOCOMO sp mode mail application 5900 through 6300 for Android 4.0.x and 6000 through 6620 for Android 4.1 throug... |
| CVE-2014-1978 | — | — | 0.9% | Mar 19, 2014 | The application link interface in the NTT DOCOMO sp mode mail application 6100 through 6300 for Android 4.0.x and 6130 t... |
| CVE-2014-1977 | — | — | 0.9% | Mar 19, 2014 | The NTT DOCOMO sp mode mail application 6300 and earlier for Android 4.0.x and 6700 and earlier for Android 4.1 through ... |
| CVE-2014-1512 | — | — | 31.4% | Mar 19, 2014 | Use-after-free vulnerability in the TypeObject class in the JavaScript engine in Mozilla Firefox before 28.0, Firefox ES... |
| CVE-2014-1507 | — | — | 1.1% | Mar 19, 2014 | Directory traversal vulnerability in the DeviceStorage API in Mozilla FirefoxOS before 1.2.2 allows attackers to bypass ... |
| CVE-2014-1506 | — | — | 2.3% | Mar 19, 2014 | Directory traversal vulnerability in Android Crash Reporter in Mozilla Firefox before 28.0 on Android allows attackers t... |
| CVE-2014-1504 | — | — | 2.1% | Mar 19, 2014 | The session-restore feature in Mozilla Firefox before 28.0 and SeaMonkey before 2.25 does not consider the Content Secur... |
| CVE-2014-1502 | — | — | 1.1% | Mar 19, 2014 | The (1) WebGL.compressedTexImage2D and (2) WebGL.compressedTexSubImage2D functions in Mozilla Firefox before 28.0 and Se... |
| CVE-2014-1501 | — | — | 1.6% | Mar 19, 2014 | Mozilla Firefox before 28.0 on Android allows remote attackers to bypass the Same Origin Policy and access arbitrary fil... |
| CVE-2014-1500 | — | — | 3.5% | Mar 19, 2014 | Mozilla Firefox before 28.0 and SeaMonkey before 2.25 allow remote attackers to cause a denial of service (resource cons... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now