2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2014-0032The get_resource function in repos.c in the mod_dav_svn module in Apache Subversion before 1.7.15 and 1.8.x before 1.8.6...
CVE-2014-0018Red Hat JBoss Enterprise Application Platform (JBEAP) 6.2.0 and JBoss WildFly Application Server, when run under a secur...
CVE-2014-1253AppleMNT.sys in Apple Boot Camp 5 before 5.1 allows local users to cause a denial of service (kernel memory corruption) ...
CVE-2014-1219CA 2E Web Option r8.1.2 accepts a predictable substring of a W2E_SSNID session token in place of the entire token, which...
CVE-2014-1680Untrusted search path vulnerability in Bandisoft Bandizip before 3.10 allows local users to gain privileges via a Trojan...
CVE-2014-1467BlackBerry Enterprise Service 10 before 10.2.1, Universal Device Service 6, Enterprise Server Express for Domino through...
CVE-2014-0855Multiple cross-site scripting (XSS) vulnerabilities in IBM Connections Portlets 4.x before 4.5.1 FP1 for IBM WebSphere P...
CVE-2014-0729SQL injection vulnerability in the Enterprise Mobility Application (EMApp) interface in Cisco Unified Communications Man...
CVE-2014-0728SQL injection vulnerability in the Java database interface in Cisco Unified Communications Manager (UCM) 10.0(1) and ear...
CVE-2014-0727SQL injection vulnerability in the CallManager Interactive Voice Response (CMIVR) interface in Cisco Unified Communicati...
CVE-2014-0726SQL injection vulnerability in the IP Manager Assistant (IPMA) interface in Cisco Unified Communications Manager (UCM) 1...
CVE-2014-0725Cisco Unified Communications Manager (UCM) does not require authentication for reading WAR files, which allows remote at...
CVE-2014-0724The bulk administration interface in Cisco Unified Communications Manager (UCM) 10.0(1) and earlier allows remote attack...
CVE-2014-0723Cross-site scripting (XSS) vulnerability in the IP Manager Assistant (IPMA) interface in Cisco Unified Communications Ma...
CVE-2014-0722The log4jinit web application in Cisco Unified Communications Manager (UCM) does not properly validate authentication, w...
CVE-2014-0501Adobe Shockwave Player before 12.0.9.149 allows remote attackers to execute arbitrary code or cause a denial of service ...
CVE-2014-0500Adobe Shockwave Player before 12.0.9.149 allows remote attackers to execute arbitrary code or cause a denial of service ...
CVE-2014-0295VsaVb7rt.dll in Microsoft .NET Framework 2.0 SP2 and 3.5.1 does not implement the ASLR protection mechanism, which makes...
CVE-2014-0294Microsoft Forefront Protection 2010 for Exchange Server does not properly parse e-mail content, which might allow remote...
CVE-2014-0293Microsoft Internet Explorer 9 through 11 allows remote attackers to read content from a different (1) domain or (2) zone...
CVE-2014-0290Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory co...
CVE-2014-0289Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory co...
CVE-2014-0288Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ...
CVE-2014-0287Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ...
CVE-2014-0286Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service ...

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now