2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-2247 | — | — | 2.4% | Mar 16, 2014 | The integrated web server on Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allows remote attackers ... |
| CVE-2014-2246 | — | — | 2.2% | Mar 16, 2014 | Cross-site scripting (XSS) vulnerability in the integrated web server on Siemens SIMATIC S7-1500 CPU PLC devices with fi... |
| CVE-2014-1715 | — | — | 1.6% | Mar 16, 2014 | Directory traversal vulnerability in Google Chrome before 33.0.1750.152 on OS X and Linux and before 33.0.1750.154 on Wi... |
| CVE-2014-1714 | — | — | 1.9% | Mar 16, 2014 | The ScopedClipboardWriter::WritePickledData function in ui/base/clipboard/scoped_clipboard_writer.cc in Google Chrome be... |
| CVE-2014-1713 | — | — | 2.3% | Mar 16, 2014 | Use-after-free vulnerability in the AttributeSetter function in bindings/templates/attributes.cpp in the bindings in Bli... |
| CVE-2014-1711 | — | — | 0.8% | Mar 16, 2014 | The GPU driver in the kernel in Google Chrome OS before 33.0.1750.152 allows remote attackers to cause a denial of servi... |
| CVE-2014-1710 | — | — | 1.1% | Mar 16, 2014 | The AsyncPixelTransfersCompletedQuery::End function in gpu/command_buffer/service/query_manager.cc in Google Chrome, as ... |
| CVE-2014-1708 | — | — | 2.0% | Mar 16, 2014 | The boot implementation in Google Chrome OS before 33.0.1750.152 does not properly consider file persistence, which allo... |
| CVE-2014-1707 | — | — | 0.8% | Mar 16, 2014 | Directory traversal vulnerability in CrosDisks in Google Chrome OS before 33.0.1750.152 has unspecified impact and attac... |
| CVE-2014-1706 | — | — | 0.6% | Mar 16, 2014 | crosh in Google Chrome OS before 33.0.1750.152 allows attackers to inject commands via unspecified vectors. |
| CVE-2014-1705 | — | — | 5.8% | Mar 16, 2014 | Google V8, as used in Google Chrome before 33.0.1750.152 on OS X and Linux and before 33.0.1750.154 on Windows, allows r... |
| CVE-2014-1704 | — | — | 1.5% | Mar 16, 2014 | Multiple unspecified vulnerabilities in Google V8 before 3.23.17.18, as used in Google Chrome before 33.0.1750.149, allo... |
| CVE-2014-1703 | — | — | 1.5% | Mar 16, 2014 | Use-after-free vulnerability in the WebSocketDispatcherHost::SendOrDrop function in content/browser/renderer_host/websoc... |
| CVE-2014-1702 | — | — | 1.4% | Mar 16, 2014 | Use-after-free vulnerability in the DatabaseThread::cleanupDatabaseThread function in modules/webdatabase/DatabaseThread... |
| CVE-2014-1701 | — | — | 1.2% | Mar 16, 2014 | The GenerateFunction function in bindings/scripts/code_generator_v8.pm in Blink, as used in Google Chrome before 33.0.17... |
| CVE-2014-1700 | — | — | 1.4% | Mar 16, 2014 | Use-after-free vulnerability in modules/speech/SpeechSynthesis.cpp in Blink, as used in Google Chrome before 33.0.1750.1... |
| CVE-2014-0895 | — | — | 4.0% | Mar 16, 2014 | Buffer overflow in the vsflex8l ActiveX control in IBM SPSS SamplePower 3.0.1 before FP1 3.0.1-IM-S3SAMPC-WIN32-FP001-IF... |
| CVE-2014-0873 | — | — | 0.6% | Mar 16, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in the (1) Data Stewardship, (2) Business Admin, and (3) Prod... |
| CVE-2014-0850 | — | — | 0.8% | Mar 16, 2014 | Cross-site scripting (XSS) vulnerability in IBM InfoSphere Master Data Management Reference Data Management (RDM) Hub 10... |
| CVE-2014-0339 | — | — | 1.6% | Mar 16, 2014 | Cross-site scripting (XSS) vulnerability in view.cgi in Webmin before 1.680 allows remote attackers to inject arbitrary ... |
| CVE-2014-0338 | — | — | 1.6% | Mar 16, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the firewall policy management pages in WatchGuard Fireware XTM b... |
| CVE-2014-2049 | — | — | 1.3% | Mar 14, 2014 | The default Flash Cross Domain policies in ownCloud before 5.0.15 and 6.x before 6.0.2 allows remote attackers to access... |
| CVE-2014-2047 | — | — | 1.3% | Mar 14, 2014 | Session fixation vulnerability in ownCloud before 6.0.2, when PHP is configured to accept session parameters through a G... |
| CVE-2014-2324 | — | — | 28.8% | Mar 14, 2014 | Multiple directory traversal vulnerabilities in (1) mod_evhost and (2) mod_simple_vhost in lighttpd before 1.4.35 allow ... |
| CVE-2014-2292 | — | — | 0.4% | Mar 14, 2014 | Unspecified vulnerability in the Linux Network Connect client in Juniper Junos Pulse Secure Access Service (aka SSL VPN)... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now