2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0009 | — | — | 1.2% | Jan 20, 2014 | course/loginas.php in Moodle through 2.2.11, 2.3.x before 2.3.11, 2.4.x before 2.4.8, 2.5.x before 2.5.4, and 2.6.x befo... |
| CVE-2014-0008 | — | — | 1.8% | Jan 20, 2014 | lib/adminlib.php in Moodle through 2.3.11, 2.4.x before 2.4.8, 2.5.x before 2.5.4, and 2.6.x before 2.6.1 logs cleartext... |
| CVE-2014-0668 | — | — | 1.5% | Jan 20, 2014 | Cross-site scripting (XSS) vulnerability in the portal in Cisco Secure Access Control System (ACS) allows remote attacke... |
| CVE-2014-1446 | — | — | 0.6% | Jan 18, 2014 | The yam_ioctl function in drivers/net/hamradio/yam.c in the Linux kernel before 3.12.8 does not initialize a certain str... |
| CVE-2014-1445 | — | — | 0.4% | Jan 18, 2014 | The wanxl_ioctl function in drivers/net/wan/wanxl.c in the Linux kernel before 3.11.7 does not properly initialize a cer... |
| CVE-2014-1444 | — | — | 0.3% | Jan 18, 2014 | The fst_get_iface function in drivers/net/wan/farsync.c in the Linux kernel before 3.11.7 does not properly initialize a... |
| CVE-2014-1438 | — | — | 0.7% | Jan 18, 2014 | The restore_fpu_checking function in arch/x86/include/asm/fpu-internal.h in the Linux kernel before 3.12.8 on the AMD K7... |
| CVE-2014-1211 | — | — | 1.3% | Jan 17, 2014 | Cross-site request forgery (CSRF) vulnerability in VMware vCloud Director 5.1.x before 5.1.3 allows remote attackers to ... |
| CVE-2014-1208 | — | — | 0.7% | Jan 17, 2014 | VMware Workstation 9.x before 9.0.1, VMware Player 5.x before 5.0.1, VMware Fusion 5.x before 5.0.1, VMware ESXi 4.0 thr... |
| CVE-2014-1207 | — | — | 2.8% | Jan 17, 2014 | VMware ESXi 4.0 through 5.1 and ESX 4.0 and 4.1 allow remote attackers to cause a denial of service (NULL pointer derefe... |
| CVE-2014-0792 | — | — | 2.8% | Jan 17, 2014 | Sonatype Nexus 1.x and 2.x before 2.7.1 allows remote attackers to create arbitrary objects and execute arbitrary code v... |
| CVE-2014-0667 | — | — | 1.4% | Jan 16, 2014 | The RMI interface in Cisco Secure Access Control System (ACS) does not properly enforce authorization requirements, whic... |
| CVE-2014-0666 | — | — | 5.5% | Jan 16, 2014 | Directory traversal vulnerability in the Send Screen Capture implementation in Cisco Jabber 9.2(.1) and earlier on Windo... |
| CVE-2014-0650 | — | — | 3.4% | Jan 16, 2014 | The web interface in Cisco Secure Access Control System (ACS) 5.x before 5.4 Patch 3 allows remote attackers to execute ... |
| CVE-2014-0649 | — | — | 2.6% | Jan 16, 2014 | The RMI interface in Cisco Secure Access Control System (ACS) 5.x before 5.5 does not properly enforce authorization req... |
| CVE-2014-0648 | — | — | 5.9% | Jan 16, 2014 | The RMI interface in Cisco Secure Access Control System (ACS) 5.x before 5.5 does not properly enforce authentication an... |
| CVE-2014-1473 | — | — | 0.7% | Jan 16, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Enterprise Manager in McAfee Vulnerability Manager (MV... |
| CVE-2014-1472 | — | — | 2.0% | Jan 16, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the Enterprise Manager in McAfee Vulnerability Manager (MVM) 7.5.... |
| CVE-2014-1448 | — | — | — | Jan 15, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-1447. Reason: This candidate is a reservation ... |
| CVE-2014-0495 | — | — | 3.9% | Jan 15, 2014 | Adobe Reader and Acrobat 10.x before 10.1.9 and 11.x before 11.0.06 on Windows and Mac OS X allow attackers to execute a... |
| CVE-2014-0493 | — | — | 5.1% | Jan 15, 2014 | Adobe Reader and Acrobat 10.x before 10.1.9 and 11.x before 11.0.06 on Windows and Mac OS X allow attackers to execute a... |
| CVE-2014-0492 | — | — | 5.7% | Jan 15, 2014 | Adobe Flash Player before 11.7.700.260 and 11.8.x and 11.9.x before 12.0.0.38 on Windows and Mac OS X and before 11.2.20... |
| CVE-2014-0491 | — | — | 7.1% | Jan 15, 2014 | Adobe Flash Player before 11.7.700.260 and 11.8.x and 11.9.x before 12.0.0.38 on Windows and Mac OS X and before 11.2.20... |
| CVE-2014-0262 | — | — | 2.2% | Jan 15, 2014 | win32k.sys in the kernel-mode drivers in Microsoft Windows 7 SP1 and Server 2008 R2 SP1 does not properly consider threa... |
| CVE-2014-0261 | — | — | 10.3% | Jan 15, 2014 | Microsoft Dynamics AX 4.0 SP2, 2009 SP1, 2012, and 2012 R2 allows remote authenticated users to cause a denial of servic... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now