2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-1885 | — | — | 1.6% | Mar 3, 2014 | The ForzeArmate application for Android, when Adobe PhoneGap 2.9.0 or earlier is used, allows remote attackers to execut... |
| CVE-2014-1884 | — | — | 8.2% | Mar 3, 2014 | Apache Cordova 3.3.0 and earlier and Adobe PhoneGap 2.9.0 and earlier on Windows Phone 7 and 8 do not properly restrict ... |
| CVE-2014-1883 | — | — | 4.2% | Mar 3, 2014 | Adobe PhoneGap before 2.6.0 on Android uses the shouldOverrideUrlLoading callback instead of the proper shouldInterceptR... |
| CVE-2014-1882 | — | — | 11.7% | Mar 3, 2014 | Apache Cordova 3.3.0 and earlier and Adobe PhoneGap 2.9.0 and earlier allow remote attackers to bypass intended device-r... |
| CVE-2014-1881 | — | — | 11.2% | Mar 3, 2014 | Apache Cordova 3.3.0 and earlier and Adobe PhoneGap 2.9.0 and earlier allow remote attackers to bypass intended device-r... |
| CVE-2014-2264 | — | — | 1.7% | Mar 2, 2014 | The OpenVPN module in Synology DiskStation Manager (DSM) 4.3-3810 update 1 has a hardcoded root password of synopass, wh... |
| CVE-2014-2092 | — | — | 1.0% | Mar 2, 2014 | Cross-site scripting (XSS) vulnerability in lib/filemanager/ImageManager/editorFrame.php in CMS Made Simple 1.11.10 allo... |
| CVE-2014-2091 | — | — | 1.3% | Mar 2, 2014 | Cross-site scripting (XSS) vulnerability in mods/_standard/forums/admin/forum_add.php in ATutor 2.1.1 allows remote auth... |
| CVE-2014-2090 | — | — | 1.5% | Mar 2, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in ilias.php in ILIAS 4.4.1 allow remote authenticated users to inje... |
| CVE-2014-2089 | — | — | 2.6% | Mar 2, 2014 | ILIAS 4.4.1 allows remote attackers to execute arbitrary PHP code via an e-mail attachment that leads to creation of a .... |
| CVE-2014-2088 | — | — | 2.7% | Mar 2, 2014 | Unrestricted file upload vulnerability in ilias.php in ILIAS 4.4.1 allows remote authenticated users to execute arbitrar... |
| CVE-2014-2033 | — | — | 1.1% | Mar 2, 2014 | The caching feature in SGOS in Blue Coat ProxySG 5.5 through 5.5.11.3, 6.1 through 6.1.6.3, 6.2 through 6.2.15.3, 6.4 th... |
| CVE-2014-0334 | — | — | 1.5% | Mar 2, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in CMS Made Simple allow remote authenticated users to inject arbitr... |
| CVE-2014-2244 | — | — | 2.1% | Mar 2, 2014 | Cross-site scripting (XSS) vulnerability in the formatHTML function in includes/api/ApiFormatBase.php in MediaWiki befor... |
| CVE-2014-2243 | — | — | 1.6% | Mar 2, 2014 | includes/User.php in MediaWiki before 1.19.12, 1.20.x and 1.21.x before 1.21.6, and 1.22.x before 1.22.3 terminates vali... |
| CVE-2014-2242 | — | — | 2.5% | Mar 2, 2014 | includes/upload/UploadBase.php in MediaWiki before 1.19.12, 1.20.x and 1.21.x before 1.21.6, and 1.22.x before 1.22.3 do... |
| CVE-2014-2104 | — | — | 1.2% | Mar 2, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the Business Voice Services Manager (BVSM) page in Cisco Unified ... |
| CVE-2014-2099 | — | — | 1.2% | Mar 2, 2014 | The msrle_decode_frame function in libavcodec/msrle.c in FFmpeg before 2.1.4 does not properly calculate line sizes, whi... |
| CVE-2014-2098 | — | — | 1.8% | Mar 2, 2014 | libavcodec/wmalosslessdec.c in FFmpeg before 2.1.4 uses an incorrect data-structure size for certain coefficients, which... |
| CVE-2014-2097 | — | — | 1.2% | Mar 2, 2014 | The tak_decode_frame function in libavcodec/takdec.c in FFmpeg before 2.1.4 does not properly validate a certain bits-pe... |
| CVE-2014-0862 | — | — | 4.3% | Mar 2, 2014 | Unspecified vulnerability in Jazz Team Server in IBM Rational Collaborative Lifecycle Management (CLM) 3.x before 3.0.1.... |
| CVE-2014-2263 | — | — | 2.3% | Mar 1, 2014 | The mpegts_write_pmt function in the MPEG2 transport stream (aka DVB) muxer (libavformat/mpegtsenc.c) in FFmpeg, possibl... |
| CVE-2014-2262 | — | — | 4.3% | Mar 1, 2014 | Buffer overflow in the client application in Base SAS 9.2 TS2M3, SAS 9.3 TS1M1 and TS1M2, and SAS 9.4 TS1M0 allows user-... |
| CVE-2014-1912 | — | — | 28.3% | Mar 1, 2014 | Buffer overflow in the socket.recvfrom_into function in Modules/socketmodule.c in Python 2.5 before 2.7.7, 3.x before 3.... |
| CVE-2014-2080 | — | — | 1.9% | Mar 1, 2014 | Cross-site scripting (XSS) vulnerability in manager/templates/default/header.tpl in ModX Revolution before 2.2.11 allows... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now