2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0311 | — | — | 12.6% | Mar 12, 2014 | Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2014-0309 | — | — | 20.3% | Mar 12, 2014 | Microsoft Internet Explorer 8 through 10 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2014-0308 | — | — | 13.6% | Mar 12, 2014 | Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2014-0307 | — | — | 72.0% | Mar 12, 2014 | Use-after-free vulnerability in Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause... |
| CVE-2014-0306 | — | — | 12.6% | Mar 12, 2014 | Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a denial of service (memo... |
| CVE-2014-0305 | — | — | 13.4% | Mar 12, 2014 | Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2014-0304 | — | — | 20.8% | Mar 12, 2014 | Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory co... |
| CVE-2014-0303 | — | — | 20.3% | Mar 12, 2014 | Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code or cause a denial of service (... |
| CVE-2014-0302 | — | — | 20.3% | Mar 12, 2014 | Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code or cause a denial of service (... |
| CVE-2014-0301 | — | — | 14.0% | Mar 12, 2014 | Double free vulnerability in qedit.dll in DirectShow in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windo... |
| CVE-2014-0300 | — | — | 1.6% | Mar 12, 2014 | win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, W... |
| CVE-2014-0299 | — | — | 20.3% | Mar 12, 2014 | Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2014-0298 | — | — | 12.6% | Mar 12, 2014 | Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2014-0297 | — | — | 21.5% | Mar 12, 2014 | Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ... |
| CVE-2014-2311 | — | — | 1.2% | Mar 11, 2014 | SQL injection vulnerability in modx.class.php in MODX Revolution 2.0.0 before 2.2.13 allows remote attackers to execute ... |
| CVE-2014-1839 | — | — | 0.4% | Mar 11, 2014 | The Execute class in shellutils in logilab-commons before 0.61.0 uses tempfile.mktemp, which allows local users to have ... |
| CVE-2014-1838 | — | — | 0.3% | Mar 11, 2014 | The (1) extract_keys_from_pdf and (2) fill_pdf functions in pdf_ext.py in logilab-commons before 0.61.0 allows local use... |
| CVE-2014-0106 | — | — | 0.3% | Mar 11, 2014 | Sudo 1.6.9 before 1.8.5, when env_reset is disabled, does not properly check environment variables for the env_delete re... |
| CVE-2014-0004 | — | — | 0.4% | Mar 11, 2014 | Stack-based buffer overflow in udisks before 1.0.5 and 2.x before 2.1.3 allows local users to cause a denial of service ... |
| CVE-2014-2321 | — | — | 59.3% | Mar 11, 2014 | web_shell_cmd.gch on ZTE F460 and F660 cable modems allows remote attackers to obtain administrative access via sendcmd ... |
| CVE-2014-2309 | — | — | 2.4% | Mar 11, 2014 | The ip6_route_add function in net/ipv6/route.c in the Linux kernel through 3.13.6 does not properly count the addition o... |
| CVE-2014-2299 | — | — | 47.1% | Mar 11, 2014 | Buffer overflow in the mpeg_read function in wiretap/mpeg.c in the MPEG parser in Wireshark 1.8.x before 1.8.13 and 1.10... |
| CVE-2014-2283 | — | — | 2.7% | Mar 11, 2014 | epan/dissectors/packet-rlc in the RLC dissector in Wireshark 1.8.x before 1.8.13 and 1.10.x before 1.10.6 uses inconsist... |
| CVE-2014-2282 | — | — | 2.1% | Mar 11, 2014 | The dissect_protocol_data_parameter function in epan/dissectors/packet-m3ua.c in the M3UA dissector in Wireshark 1.10.x ... |
| CVE-2014-2281 | — | — | 2.9% | Mar 11, 2014 | The nfs_name_snoop_add_name function in epan/dissectors/packet-nfs.c in the NFS dissector in Wireshark 1.8.x before 1.8.... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now