2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0830 | — | — | 1.4% | Feb 1, 2014 | Directory traversal vulnerability in the table-export implementation in the OAC component in IBM Financial Transaction M... |
| CVE-2014-0812 | — | — | 1.2% | Feb 1, 2014 | Cross-site scripting (XSS) vulnerability in KENT-WEB Joyful Note 2.8 and earlier, when Internet Explorer 7 or earlier is... |
| CVE-2014-0001 | — | — | 6.4% | Jan 31, 2014 | Buffer overflow in client/mysql.cc in Oracle MySQL and MariaDB before 5.5.35 allows remote database servers to cause a d... |
| CVE-2014-1204 | — | — | 4.3% | Jan 31, 2014 | SQL injection vulnerability in Tableau Server 8.0.x before 8.0.7 and 8.1.x before 8.1.2 allows remote authenticated user... |
| CVE-2014-0757 | — | — | 3.2% | Jan 31, 2014 | Smart Software Solutions (3S) CoDeSys Runtime Toolkit before 2.4.7.44 allows remote attackers to cause a denial of servi... |
| CVE-2014-1610 | — | — | 42.8% | Jan 30, 2014 | MediaWiki 1.22.x before 1.22.2, 1.21.x before 1.21.5, and 1.19.x before 1.19.11, when DjVu or PDF file upload support is... |
| CVE-2014-1837 | — | — | 1.2% | Jan 30, 2014 | Cross-site scripting (XSS) vulnerability in the StackIdeas Komento (com_komento) component before 1.7.4 for Joomla! allo... |
| CVE-2014-1612 | — | — | 2.5% | Jan 30, 2014 | Cross-site scripting (XSS) vulnerability in login.esp in the Web Management Interface in Media5 Mediatrix 4402 VoIP Gate... |
| CVE-2014-1611 | — | — | 2.2% | Jan 30, 2014 | Cross-site scripting (XSS) vulnerability in the Anonymous Posting module 7.x-1.2 and 7.x-1.3 for Drupal allows remote at... |
| CVE-2014-0793 | — | — | 1.8% | Jan 30, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the StackIdeas Komento (com_komento) component before 1.7.3 for J... |
| CVE-2014-0838 | — | — | 1.5% | Jan 30, 2014 | The AutoUpdate package before 6.4 for IBM Security QRadar SIEM 7.2 MR1 and earlier allows remote attackers to execute ar... |
| CVE-2014-0837 | — | — | 0.7% | Jan 30, 2014 | The AutoUpdate process in IBM Security QRadar SIEM 7.2 MR1 and earlier does not verify X.509 certificates from SSL serve... |
| CVE-2014-0836 | — | — | 1.3% | Jan 30, 2014 | Cross-site scripting (XSS) vulnerability in IBM Security QRadar SIEM 7.2 MR1 and earlier allows remote attackers to inje... |
| CVE-2014-0835 | — | — | 0.7% | Jan 30, 2014 | Cross-site request forgery (CSRF) vulnerability in IBM Security QRadar SIEM 7.2 MR1 and earlier allows remote attackers ... |
| CVE-2014-1683 | — | — | 31.4% | Jan 29, 2014 | The bashMail function in cms/data/skins/techjunkie/fragments/contacts/functions.php in SkyBlueCanvas CMS before 1.1 r248... |
| CVE-2014-0682 | — | — | 1.9% | Jan 29, 2014 | Cisco WebEx Meetings Server allows remote authenticated users to bypass authorization checks and (1) join arbitrary meet... |
| CVE-2014-0681 | — | — | 1.4% | Jan 29, 2014 | Cross-site scripting (XSS) vulnerability in Cisco Identity Services Engine (ISE) 1.2 patch 2 and earlier allows remote a... |
| CVE-2014-0680 | — | — | 2.0% | Jan 29, 2014 | Cross-site scripting (XSS) vulnerability in the HTTP control interface in the NAC Web Agent component in Cisco Identity ... |
| CVE-2014-0810 | — | — | 3.5% | Jan 29, 2014 | Unspecified vulnerability in JustSystems Sanshiro 2007 before update 3, 2008 before update 5, 2009 before update 6, and ... |
| CVE-2014-0025 | — | — | — | Jan 28, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-1690. Reason: This candidate is a reservation ... |
| CVE-2014-1681 | — | — | 1.3% | Jan 28, 2014 | Multiple unspecified vulnerabilities in Google Chrome before 32.0.1700.102 have unknown impact and attack vectors, relat... |
| CVE-2014-1640 | — | — | 0.3% | Jan 28, 2014 | axiom-test.sh in axiom 20100701-1.1 uses tempfile to create a safe temporary file but appends a suffix to the original f... |
| CVE-2014-1639 | — | — | 0.4% | Jan 28, 2014 | syncevo/installcheck-local.sh in syncevolution before 1.3.99.7 uses mktemp to create a safe temporary file but appends a... |
| CVE-2014-1638 | — | — | 0.4% | Jan 28, 2014 | (1) debian/postrm and (2) debian/localepurge.config in localepurge before 0.7.3.2 use tempfile to create a safe temporar... |
| CVE-2014-1624 | — | — | 0.3% | Jan 28, 2014 | Race condition in the xdg.BaseDirectory.get_runtime_dir function in python-xdg 0.25 allows local users to overwrite arbi... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now