2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0703 | — | — | 2.0% | Mar 6, 2014 | Cisco Wireless LAN Controller (WLC) devices 7.4 before 7.4.110.0 distribute Aironet IOS software with a race condition i... |
| CVE-2014-0701 | — | — | 1.3% | Mar 6, 2014 | Cisco Wireless LAN Controller (WLC) devices 7.0 before 7.0.250.0, 7.2, 7.3, and 7.4 before 7.4.110.0 do not properly dea... |
| CVE-2014-0683 | — | — | 10.3% | Mar 6, 2014 | The web management interface on the Cisco RV110W firewall with firmware 1.2.0.9 and earlier, RV215W router with firmware... |
| CVE-2014-0630 | — | — | 0.9% | Mar 6, 2014 | EMC Documentum TaskSpace (TSP) 6.7SP1 before P25 and 6.7SP2 before P11 allows remote authenticated users to read arbitra... |
| CVE-2014-0629 | — | — | 1.5% | Mar 6, 2014 | EMC Documentum TaskSpace (TSP) 6.7SP1 before P25 and 6.7SP2 before P11 does not properly handle the interaction between ... |
| CVE-2014-0624 | — | — | 0.5% | Mar 6, 2014 | EMC RSA Data Loss Prevention (DLP) 9.x before 9.6-SP2 does not properly manage sessions, which allows remote authenticat... |
| CVE-2014-0336 | — | — | 0.7% | Mar 6, 2014 | Cross-site request forgery (CSRF) vulnerability in the web client in Serena Dimensions CM 12.2 build 7.199.0 allows remo... |
| CVE-2014-0335 | — | — | 1.1% | Mar 6, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the web client in Serena Dimensions CM 12.2 build 7.199.0 allow r... |
| CVE-2014-2245 | — | — | 1.0% | Mar 5, 2014 | SQL injection vulnerability in the News module in CMS Made Simple (CMSMS) before 1.11.10 allows remote authenticated use... |
| CVE-2014-2238 | — | — | 11.3% | Mar 5, 2014 | SQL injection vulnerability in the manage configuration page (adm_config_report.php) in MantisBT 1.2.13 through 1.2.16 a... |
| CVE-2014-2235 | — | — | 1.9% | Mar 5, 2014 | Cross-site scripting (XSS) vulnerability in Askbot before 0.7.49 allows remote attackers to inject arbitrary web script ... |
| CVE-2014-2236 | — | — | 2.1% | Mar 5, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in Askbot before 0.7.49 allow remote attackers to inject arbitrary w... |
| CVE-2014-2206 | — | — | 61.4% | Mar 5, 2014 | Stack-based buffer overflow in GetGo Download Manager 4.9.0.1982, 4.8.2.1346, 4.4.5.502, and earlier allows remote attac... |
| CVE-2014-2234 | — | — | 1.1% | Mar 5, 2014 | A certain Apple patch for OpenSSL in Apple OS X 10.9.2 and earlier uses a Trust Evaluation Agent (TEA) feature without t... |
| CVE-2014-0846 | — | — | 0.9% | Mar 4, 2014 | Cross-site scripting (XSS) vulnerability in IBM Rational Requirements Composer 3.x before 3.0.1.6 iFix2 and 4.x before 4... |
| CVE-2014-0845 | — | — | 1.0% | Mar 4, 2014 | Open redirect vulnerability in IBM Rational Requirements Composer 3.x before 3.0.1.6 iFix2 and 4.x before 4.0.6, and Rat... |
| CVE-2014-0844 | — | — | 0.9% | Mar 4, 2014 | Unspecified vulnerability in IBM Rational Requirements Composer 3.x before 3.0.1.6 iFix2 and 4.x before 4.0.6, and Ratio... |
| CVE-2014-2040 | — | — | 1.6% | Mar 3, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the (1) callback_multicheck, (2) callback_radio, and (3) callback... |
| CVE-2014-2211 | — | — | 2.4% | Mar 3, 2014 | SQL injection vulnerability in portal/addtoapplication.php in POSH (aka Posh portal or Portaneo) 3.0 before 3.3.0 allows... |
| CVE-2014-2013 | — | — | 14.5% | Mar 3, 2014 | Stack-based buffer overflow in the xps_parse_color function in xps/xps-common.c in MuPDF 1.3 and earlier allows remote a... |
| CVE-2014-1840 | — | — | 1.0% | Mar 3, 2014 | Cross-site scripting (XSS) vulnerability in Upload/search.php in MyBB 1.6.12 and earlier allows remote attackers to inje... |
| CVE-2014-1684 | — | — | 5.2% | Mar 3, 2014 | The ASF_ReadObject_file_properties function in modules/demux/asf/libasf.c in the ASF Demuxer in VideoLAN VLC Media Playe... |
| CVE-2014-1939 | — | — | 1.1% | Mar 3, 2014 | java/android/webkit/BrowserFrame.java in Android before 4.4 uses the addJavascriptInterface API in conjunction with crea... |
| CVE-2014-1887 | — | — | 1.3% | Mar 3, 2014 | The DrinkedIn BarFinder application for Android, when Adobe PhoneGap 2.9.0 or earlier is used, allows remote attackers t... |
| CVE-2014-1886 | — | — | 1.5% | Mar 3, 2014 | The Edinburgh by Bus application for Android, when Adobe PhoneGap 2.9.0 or earlier is used, allows remote attackers to e... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now