2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0066 | — | — | 4.7% | Mar 31, 2014 | The chkpass extension in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3... |
| CVE-2014-0065 | — | — | 5.0% | Mar 31, 2014 | Multiple buffer overflows in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and... |
| CVE-2014-0064 | — | — | 5.4% | Mar 31, 2014 | Multiple integer overflows in the path_in and other unspecified functions in PostgreSQL before 8.4.20, 9.0.x before 9.0.... |
| CVE-2014-0063 | — | — | 6.7% | Mar 31, 2014 | Multiple stack-based buffer overflows in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x befor... |
| CVE-2014-0062 | — | — | 3.0% | Mar 31, 2014 | Race condition in the (1) CREATE INDEX and (2) unspecified ALTER TABLE commands in PostgreSQL before 8.4.20, 9.0.x befor... |
| CVE-2014-0061 | — | — | 4.9% | Mar 31, 2014 | The validator functions for the procedural languages (PLs) in PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x befor... |
| CVE-2014-0060 | — | — | 4.1% | Mar 31, 2014 | PostgreSQL before 8.4.20, 9.0.x before 9.0.16, 9.1.x before 9.1.12, 9.2.x before 9.2.7, and 9.3.x before 9.3.3 does not ... |
| CVE-2014-2670 | — | — | 1.9% | Mar 29, 2014 | Cross-site scripting (XSS) vulnerability in Properties.do in ZOHO ManageEngine OpStor before build 8500 allows remote au... |
| CVE-2014-1516 | — | — | 1.2% | Mar 29, 2014 | The saltProfileName function in base/GeckoProfileDirectories.java in Mozilla Firefox through 28.0.1 on Android relies on... |
| CVE-2014-0344 | — | — | 5.5% | Mar 29, 2014 | Properties.do in ZOHO ManageEngine OpStor before build 8500 does not properly check privilege levels, which allows remot... |
| CVE-2014-2131 | — | — | 0.7% | Mar 29, 2014 | The packet driver in Cisco IOS allows remote attackers to cause a denial of service (device reload) via a series of (1) ... |
| CVE-2014-1645 | — | — | 1.4% | Mar 29, 2014 | SQL injection vulnerability in forcepasswd.do in the management GUI in Symantec LiveUpdate Administrator (LUA) 2.x befor... |
| CVE-2014-1644 | — | — | 2.6% | Mar 29, 2014 | The forgotten-password feature in forcepasswd.do in the management GUI in Symantec LiveUpdate Administrator (LUA) 2.x be... |
| CVE-2014-0880 | — | — | 1.9% | Mar 29, 2014 | IBM SAN Volume Controller; Storwize V3500, V3700, V5000, and V7000; and Flex System V7000 with software 6.3 and 6.4 befo... |
| CVE-2014-2668 | — | — | 22.1% | Mar 28, 2014 | Apache CouchDB 1.5.0 and earlier allows remote attackers to cause a denial of service (CPU and memory consumption) via t... |
| CVE-2014-2599 | — | — | 0.4% | Mar 28, 2014 | The HVMOP_set_mem_access HVM control operations in Xen 4.1.x for 32-bit and 4.1.x through 4.4.x for 64-bit allow local g... |
| CVE-2014-2525 | — | — | 9.2% | Mar 28, 2014 | Heap-based buffer overflow in the yaml_parser_scan_uri_escapes function in LibYAML before 0.1.6 allows context-dependent... |
| CVE-2014-0133 | — | — | 9.3% | Mar 28, 2014 | Heap-based buffer overflow in the SPDY implementation in nginx 1.3.15 before 1.4.7 and 1.5.x before 1.5.12 allows remote... |
| CVE-2014-2118 | — | — | 1.8% | Mar 27, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in dashboard-related HTML documents in Cisco Prime Security Manager ... |
| CVE-2014-2113 | — | — | 2.0% | Mar 27, 2014 | Cisco IOS 15.1 through 15.3 and IOS XE 3.3 and 3.5 before 3.5.2E; 3.7 before 3.7.5S; and 3.8, 3.9, and 3.10 before 3.10.... |
| CVE-2014-2112 | — | — | 2.0% | Mar 27, 2014 | The SSL VPN (aka WebVPN) feature in Cisco IOS 15.1 through 15.4 allows remote attackers to cause a denial of service (me... |
| CVE-2014-2111 | — | — | 1.7% | Mar 27, 2014 | The Application Layer Gateway (ALG) module in Cisco IOS 12.2 through 12.4 and 15.0 through 15.4, when NAT is used, allow... |
| CVE-2014-2109 | — | — | 2.2% | Mar 27, 2014 | The TCP Input module in Cisco IOS 12.2 through 12.4 and 15.0 through 15.4, when NAT is used, allows remote attackers to ... |
| CVE-2014-2108 | — | — | 2.2% | Mar 27, 2014 | Cisco IOS 12.2 and 15.0 through 15.3 and IOS XE 3.2 through 3.7 before 3.7.5S and 3.8 through 3.10 before 3.10.1S allow ... |
| CVE-2014-2107 | — | — | 1.7% | Mar 27, 2014 | Cisco IOS 12.2 and 15.0 through 15.3, when used with the Kailash FPGA before 2.6 on RSP720-3C-10GE and RSP720-3CXL-10GE ... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now