2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0235 | — | — | — | Apr 8, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-0325, CVE-2014-3538. Reason: This candidate is... |
| CVE-2014-2543 | — | — | 4.0% | Apr 8, 2014 | Buffer overflow in the Rendezvous Daemon (rvd), Rendezvous Routing Daemon (rvrd), Rendezvous Secure Daemon (rvsd), and R... |
| CVE-2014-2542 | — | — | 1.8% | Apr 8, 2014 | Cross-site scripting (XSS) vulnerability in the Rendezvous Daemon (rvd), Rendezvous Routing Daemon (rvrd), Rendezvous Se... |
| CVE-2014-2541 | — | — | 2.0% | Apr 8, 2014 | The Rendezvous Daemon (rvd), Rendezvous Routing Daemon (rvrd), Rendezvous Secure Daemon (rvsd), and Rendezvous Secure Ro... |
| CVE-2014-0346 | — | — | — | Apr 7, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-0160. Reason: This candidate is a reservation ... |
| CVE-2014-0160 | HIGH | 7.5 | 100.0% | Apr 7, 2014 | The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle Heartbeat Extension packe... |
| CVE-2014-2730 | — | — | 11.4% | Apr 5, 2014 | The XML parser in Microsoft Office 2007 SP3, 2010 SP1 and SP2, and 2013, and Office for Mac 2011, does not properly dete... |
| CVE-2014-2600 | — | — | 1.2% | Apr 5, 2014 | Unspecified vulnerability in HP IceWall Identity Manager 4.0 through SP1 and 5.0 and IceWall SSO 10.0 Password Reset Opt... |
| CVE-2014-2145 | — | — | 1.6% | Apr 5, 2014 | Directory traversal vulnerability in the messaging API in Cisco Unity Connection allows remote authenticated users to re... |
| CVE-2014-2144 | — | — | 0.7% | Apr 5, 2014 | Cisco IOS XR does not properly throttle ICMPv6 redirect packets, which allows remote attackers to cause a denial of serv... |
| CVE-2014-0827 | — | — | 1.1% | Apr 5, 2014 | Cross-site scripting (XSS) vulnerability in IBM InfoSphere Optim Workload Replay 1.1 allows remote attackers to inject a... |
| CVE-2014-0337 | — | — | 0.8% | Apr 5, 2014 | Cross-site scripting (XSS) vulnerability in the web interface on Huawei Echo Life HG8247 routers with software before V1... |
| CVE-2014-2210 | — | — | 5.2% | Apr 4, 2014 | Multiple directory traversal vulnerabilities in CA ERwin Web Portal 9.5 allow remote attackers to obtain sensitive infor... |
| CVE-2014-2143 | — | — | 1.7% | Apr 4, 2014 | The IKE implementation in Cisco IOS 15.4(1)T and earlier and IOS XE allows remote attackers to cause a denial of service... |
| CVE-2014-2117 | — | — | 1.8% | Apr 4, 2014 | Multiple open redirect vulnerabilities in Cisco Emergency Responder (ER) 8.6 and earlier allow remote attackers to redir... |
| CVE-2014-2116 | — | — | 1.8% | Apr 4, 2014 | Cisco Emergency Responder (ER) 8.6 and earlier allows remote attackers to inject web pages and modify dynamic content vi... |
| CVE-2014-2115 | — | — | 0.6% | Apr 4, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in CERUserServlet pages in Cisco Emergency Responder (ER) 8.6... |
| CVE-2014-2114 | — | — | 1.8% | Apr 4, 2014 | Cross-site scripting (XSS) vulnerability in UserServlet in Cisco Emergency Responder (ER) 8.6 and earlier allows remote ... |
| CVE-2014-0789 | — | — | 2.5% | Apr 4, 2014 | Multiple buffer overflows in the OPC Automation 2.0 Server Object ActiveX control in Schneider Electric OPC Factory Serv... |
| CVE-2014-0638 | — | — | 1.0% | Apr 4, 2014 | Cross-site scripting (XSS) vulnerability in RSA Adaptive Authentication (On-Premise) 6.x and 7.x before 7.1 SP0 P2 allow... |
| CVE-2014-0637 | — | — | 1.0% | Apr 4, 2014 | Cross-site scripting (XSS) vulnerability in the back-office case-management application in RSA Adaptive Authentication (... |
| CVE-2014-0592 | — | — | 1.6% | Apr 4, 2014 | Barclamp (aka barclamp-network) 1.7 for the Crowbar Framework, as used in SUSE Cloud 3, does not enable netfilter on bri... |
| CVE-2014-2340 | — | — | 2.8% | Apr 3, 2014 | Cross-site request forgery (CSRF) vulnerability in the XCloner plugin before 3.1.1 for WordPress allows remote attackers... |
| CVE-2014-0466 | — | — | 2.3% | Apr 3, 2014 | The fixps script in a2ps 4.14 does not use the -dSAFER option when executing gs, which allows context-dependent attacker... |
| CVE-2014-0093 | — | — | 2.1% | Apr 3, 2014 | Red Hat JBoss Enterprise Application Platform (JBEAP) 6.2.2, when using a Java Security Manager (JSM), does not properly... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now