2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-1499 | — | — | 1.9% | Mar 19, 2014 | Mozilla Firefox before 28.0 and SeaMonkey before 2.25 allow remote attackers to spoof the domain name in the WebRTC (1) ... |
| CVE-2014-1498 | — | — | 1.8% | Mar 19, 2014 | The crypto.generateCRMFRequest method in Mozilla Firefox before 28.0 and SeaMonkey before 2.25 does not properly validat... |
| CVE-2014-1494 | — | — | 5.1% | Mar 19, 2014 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 28.0 and SeaMonkey before 2.25 allo... |
| CVE-2014-2122 | — | — | 3.0% | Mar 19, 2014 | Memory leak in the GUI in the Impact server in Cisco Hosted Collaboration Solution (HCS) allows remote attackers to caus... |
| CVE-2014-2121 | — | — | 3.0% | Mar 19, 2014 | The Java-based software in Cisco Hosted Collaboration Solution (HCS) allows remote attackers to cause a denial of servic... |
| CVE-2014-2537 | — | — | 3.1% | Mar 18, 2014 | Memory leak in the TCP stack in the kernel in Sophos UTM before 9.109 allows remote attackers to cause a denial of servi... |
| CVE-2014-2536 | — | — | 2.4% | Mar 18, 2014 | Directory traversal vulnerability in McAfee Cloud Identity Manager 3.0, 3.1, and 3.5.1, McAfee Cloud Single Sign On (MCS... |
| CVE-2014-2535 | — | — | 2.1% | Mar 18, 2014 | Directory traversal vulnerability in McAfee Web Gateway (MWG) 7.4.x before 7.4.1, 7.3.x before 7.3.2.6, and 7.2.0.9 and ... |
| CVE-2014-2241 | — | — | 1.6% | Mar 18, 2014 | The (1) cf2_initLocalRegionBuffer and (2) cf2_initGlobalRegionBuffer functions in cff/cf2ft.c in FreeType before 2.5.3 d... |
| CVE-2014-2087 | — | — | 16.7% | Mar 18, 2014 | Stack-based buffer overflow in the CDownloads_Deleted::UpdateDownload function in Downloads_Deleted.cpp in Free Download... |
| CVE-2014-1608 | — | — | 3.1% | Mar 18, 2014 | SQL injection vulnerability in the mci_file_get function in api/soap/mc_file_api.php in MantisBT before 1.2.16 allows re... |
| CVE-2014-0132 | — | — | 2.2% | Mar 18, 2014 | The SASL authentication functionality in 389 Directory Server before 1.2.11.26 allows remote authenticated users to conn... |
| CVE-2014-0057 | — | — | 1.6% | Mar 18, 2014 | The x_button method in the ServiceController (vmdb/app/controllers/service_controller.rb) in Red Hat CloudForms 3.0 Mana... |
| CVE-2014-2534 | — | — | 0.9% | Mar 18, 2014 | /sbin/pppoectl in BlackBerry QNX Neutrino RTOS 6.4.x and 6.5.x allows local users to obtain sensitive information by rea... |
| CVE-2014-2533 | — | — | 2.9% | Mar 18, 2014 | /sbin/ifwatchd in BlackBerry QNX Neutrino RTOS 6.4.x and 6.5.x allows local users to gain privileges by providing an arb... |
| CVE-2014-1976 | — | — | 0.6% | Mar 18, 2014 | The Demaecan application 2.1.0 and earlier for Android does not verify X.509 certificates from SSL servers, which allows... |
| CVE-2014-1975 | — | — | 1.5% | Mar 18, 2014 | Directory traversal vulnerability in the R-Company Unzipper application 1.0.1 and earlier for Android allows remote atta... |
| CVE-2014-0098 | — | — | 26.0% | Mar 18, 2014 | The log_cookie function in mod_log_config.c in the mod_log_config module in the Apache HTTP Server before 2.4.8 allows r... |
| CVE-2014-2259 | — | — | 4.5% | Mar 16, 2014 | Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allow remote attackers to cause a denial of service (... |
| CVE-2014-2257 | — | — | 3.5% | Mar 16, 2014 | Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allow remote attackers to cause a denial of service (... |
| CVE-2014-2255 | — | — | 4.5% | Mar 16, 2014 | Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allow remote attackers to cause a denial of service (... |
| CVE-2014-2253 | — | — | 1.0% | Mar 16, 2014 | Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allow remote attackers to cause a denial of service (... |
| CVE-2014-2251 | — | — | 2.7% | Mar 16, 2014 | The random-number generator on Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 does not have sufficie... |
| CVE-2014-2249 | — | — | 1.3% | Mar 16, 2014 | Cross-site request forgery (CSRF) vulnerability on Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 an... |
| CVE-2014-2248 | — | — | 2.2% | Mar 16, 2014 | Open redirect vulnerability in the integrated web server on Siemens SIMATIC S7-1500 CPU PLC devices with firmware before... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now