2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-2106 | — | — | 2.4% | Mar 27, 2014 | Cisco IOS 15.3M before 15.3(3)M2 and IOS XE 3.10.xS before 3.10.2S allow remote attackers to cause a denial of service (... |
| CVE-2014-5880 | — | — | — | Mar 27, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-5880. Reason: This candidate is a duplicate of ... |
| CVE-2014-5795 | — | — | — | Mar 27, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-5795. Reason: This candidate is a duplicate of ... |
| CVE-2014-2326 | — | — | 3.2% | Mar 27, 2014 | Cross-site scripting (XSS) vulnerability in cdef.php in Cacti 0.8.7g, 0.8.8b, and earlier allows remote attackers to inj... |
| CVE-2014-0089 | — | — | 1.9% | Mar 27, 2014 | Cross-site scripting (XSS) vulnerability in app/views/common/500.html.erb in Foreman 1.4.x before 1.4.2 allows remote au... |
| CVE-2014-2653 | MEDIUM | 6.5 | 2.0% | Mar 27, 2014 | The verify_host_key function in sshconnect.c in the client in OpenSSH 6.6 and earlier allows remote servers to trigger t... |
| CVE-2014-0623 | — | — | 1.0% | Mar 27, 2014 | Cross-site scripting (XSS) vulnerability in the Self-Service Console in EMC RSA Authentication Manager 7.1 before SP4 P3... |
| CVE-2014-0512 | — | — | 4.8% | Mar 27, 2014 | Adobe Reader 11.0.06 allows attackers to bypass a PDF sandbox protection mechanism via unspecified vectors, as demonstra... |
| CVE-2014-0511 | — | — | 9.2% | Mar 27, 2014 | Heap-based buffer overflow in Adobe Reader 11.0.06 allows remote attackers to execute arbitrary code via unspecified vec... |
| CVE-2014-0510 | — | — | 8.5% | Mar 27, 2014 | Heap-based buffer overflow in Adobe Flash Player 12.0.0.77 allows remote attackers to execute arbitrary code and bypass ... |
| CVE-2014-0506 | — | — | 7.6% | Mar 27, 2014 | Use-after-free vulnerability in Adobe Flash Player before 11.7.700.275 and 11.8.x through 13.0.x before 13.0.0.182 on Wi... |
| CVE-2014-1303 | — | — | 34.8% | Mar 26, 2014 | Heap-based buffer overflow in Apple Safari 7.0.2 allows remote attackers to execute arbitrary code and bypass a sandbox ... |
| CVE-2014-1300 | — | — | 5.5% | Mar 26, 2014 | Unspecified vulnerability in Apple Safari 7.0.2 on OS X allows remote attackers to execute arbitrary code with root priv... |
| CVE-2014-0055 | — | — | 0.6% | Mar 26, 2014 | The get_rx_bufs function in drivers/vhost/net.c in the vhost-net subsystem in the Linux kernel package before 2.6.32-431... |
| CVE-2014-1828 | — | — | 1.2% | Mar 26, 2014 | The iThoughts web server in the iThoughtsHD app 4.19 for iOS on iPad devices allows remote attackers to cause a denial o... |
| CVE-2014-1827 | — | — | 1.0% | Mar 26, 2014 | The iThoughtsHD app 4.19 for iOS on iPad devices, when the WiFi Transfer feature is used, allows remote attackers to upl... |
| CVE-2014-1826 | — | — | 0.9% | Mar 26, 2014 | Cross-site scripting (XSS) vulnerability in the iThoughtsHD app 4.19 for iOS on iPad devices, when the WiFi Transfer fea... |
| CVE-2014-0904 | — | — | 3.1% | Mar 26, 2014 | The update process in IBM Security AppScan Standard 7.9 through 8.8 does not require integrity checks of downloaded file... |
| CVE-2014-0848 | — | — | 0.9% | Mar 26, 2014 | The (1) ssl.conf and (2) httpd.conf files in the Apache HTTP Server component in IBM Netezza Performance Portal 2.0 befo... |
| CVE-2014-0887 | — | — | 1.6% | Mar 25, 2014 | The Admin Web UI in IBM Lotus Protector for Mail Security 2.8.x before 2.8.1-22905 allows remote authenticated users to ... |
| CVE-2014-0886 | — | — | 1.6% | Mar 25, 2014 | The Admin Web UI in IBM Lotus Protector for Mail Security 2.8.x before 2.8.1-22905 allows remote authenticated users to ... |
| CVE-2014-0885 | — | — | 0.6% | Mar 25, 2014 | Cross-site request forgery (CSRF) vulnerability in the Admin Web UI in IBM Lotus Protector for Mail Security 2.8.x befor... |
| CVE-2014-0884 | — | — | 0.8% | Mar 25, 2014 | Cross-site scripting (XSS) vulnerability in the Admin Web UI in IBM Lotus Protector for Mail Security 2.8.x before 2.8.1... |
| CVE-2014-0343 | — | — | 0.6% | Mar 25, 2014 | The web interface on Virtual Access GW6110A routers with software 9.00 before 9.09.27, 9.50 before 9.50.21, and 10.00 be... |
| CVE-2014-2538 | — | — | 2.2% | Mar 25, 2014 | Cross-site scripting (XSS) vulnerability in lib/rack/ssl.rb in the rack-ssl gem before 1.4.0 for Ruby allows remote atta... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now