2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-1243 | — | — | 3.6% | Feb 27, 2014 | Apple QuickTime before 7.7.5 does not initialize an unspecified pointer, which allows remote attackers to execute arbitr... |
| CVE-2014-0821 | — | — | 1.0% | Feb 27, 2014 | SQL injection vulnerability in the download feature in Cybozu Garoon 2.x through 2.5.4 and 3.x through 3.7 SP3 allows re... |
| CVE-2014-0820 | — | — | 1.5% | Feb 27, 2014 | Directory traversal vulnerability in the download feature in Cybozu Garoon 2.x through 2.5.4 and 3.x through 3.7 SP3 all... |
| CVE-2014-0817 | — | — | 1.0% | Feb 27, 2014 | Cybozu Garoon 2.x through 2.5.4 and 3.x through 3.7 SP3 does not properly manage sessions, which allows remote authentic... |
| CVE-2014-0816 | — | — | 0.8% | Feb 27, 2014 | Unspecified vulnerability in Norman Security Suite 10.1 and earlier allows local users to gain privileges via unknown ve... |
| CVE-2014-0747 | — | — | 0.3% | Feb 27, 2014 | The Certificate Authority Proxy Function (CAPF) CLI implementation in Cisco Unified Communications Manager (Unified CM) ... |
| CVE-2014-0746 | — | — | 1.3% | Feb 27, 2014 | The disaster recovery system (DRS) in Cisco Unified Contact Center Express (Unified CCX) allows remote authenticated use... |
| CVE-2014-0745 | — | — | 0.8% | Feb 27, 2014 | Cross-site request forgery (CSRF) vulnerability in the Unified Serviceability subsystem in Cisco Unified Contact Center ... |
| CVE-2014-0743 | — | — | 1.4% | Feb 27, 2014 | The Certificate Authority Proxy Function (CAPF) component in Cisco Unified Communications Manager (Unified CM) 10.0(1) a... |
| CVE-2014-0742 | — | — | 0.2% | Feb 27, 2014 | The Certificate Authority Proxy Function (CAPF) CLI implementation in the CSR management feature in Cisco Unified Commun... |
| CVE-2014-0741 | — | — | 0.2% | Feb 27, 2014 | The certificate-import feature in the Certificate Authority Proxy Function (CAPF) CLI implementation in Cisco Unified Co... |
| CVE-2014-0740 | — | — | 1.0% | Feb 27, 2014 | Cross-site request forgery (CSRF) vulnerability in the Call Detail Records Analysis and Reporting (CAR) interface in the... |
| CVE-2014-0070 | — | — | — | Feb 27, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2014-2205 | — | — | 2.0% | Feb 26, 2014 | The Import and Export Framework in McAfee ePolicy Orchestrator (ePO) before 4.6.7 Hotfix 940148 allows remote authentica... |
| CVE-2014-0058 | — | — | 0.3% | Feb 26, 2014 | The security audit functionality in Red Hat JBoss Enterprise Application Platform (EAP) 6.x before 6.2.1 logs request pa... |
| CVE-2014-2096 | — | — | 0.4% | Feb 26, 2014 | Untrusted search path vulnerability in Catfish 0.6.0 through 1.0.0 allows local users to gain privileges via a Trojan ho... |
| CVE-2014-2095 | — | — | 0.4% | Feb 26, 2014 | Untrusted search path vulnerability in Catfish 0.6.0 through 1.0.0, when a Fedora package such as 0.8.2-1 is not used, a... |
| CVE-2014-2094 | — | — | 0.4% | Feb 26, 2014 | Untrusted search path vulnerability in Catfish through 0.4.0.3, when a Fedora package such as 0.4.0.2-2 is not used, all... |
| CVE-2014-2093 | — | — | 0.4% | Feb 26, 2014 | Untrusted search path vulnerability in Catfish through 0.4.0.3 allows local users to gain privileges via a Trojan horse ... |
| CVE-2014-0033 | — | — | 9.9% | Feb 26, 2014 | org/apache/catalina/connector/CoyoteAdapter.java in Apache Tomcat 6.0.33 through 6.0.37 does not consider the disableURL... |
| CVE-2014-0853 | — | — | 0.9% | Feb 26, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the (1) ForwardController and (2) AttributeEditor scripts in IBM ... |
| CVE-2014-0843 | — | — | 1.1% | Feb 26, 2014 | Cross-site scripting (XSS) vulnerability in IBM Rational Focal Point 6.4.x and 6.5.x before 6.5.2.3 and 6.6.x before 6.6... |
| CVE-2014-0842 | — | — | 1.2% | Feb 26, 2014 | The account-creation functionality in IBM Rational Focal Point 6.4.x and 6.5.x before 6.5.2.3 and 6.6.x before 6.6.1 pla... |
| CVE-2014-0840 | — | — | 1.1% | Feb 26, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in IBM Rational Focal Point 6.4.x and 6.5.x before 6.5.2.3 and 6.6.x... |
| CVE-2014-0839 | — | — | 0.8% | Feb 26, 2014 | IBM Rational Focal Point 6.4.x and 6.5.x before 6.5.2.3 and 6.6.x before 6.6.1 allows remote authenticated users to modi... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now