2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0661 | — | — | 2.3% | Jan 22, 2014 | The System Status Collection Daemon (SSCD) in Cisco TelePresence System 500-37, 1000, 1300-65, and 3xxx before 1.10.2(42... |
| CVE-2014-0660 | — | — | 1.9% | Jan 22, 2014 | Cisco TelePresence ISDN Gateway with software before 2.2(1.92) allows remote attackers to cause a denial of service (D-c... |
| CVE-2014-1637 | — | — | 6.9% | Jan 22, 2014 | Command School Student Management System 1.06.01 does not properly restrict access to sw/backup/backup_ray2.php, which a... |
| CVE-2014-1636 | — | — | 3.9% | Jan 22, 2014 | Multiple SQL injection vulnerabilities in Command School Student Management System 1.06.01 allow remote attackers to exe... |
| CVE-2014-0672 | — | — | 2.1% | Jan 22, 2014 | The Search and Play interface in Cisco MediaSense does not properly enforce authorization requirements, which allows rem... |
| CVE-2014-0671 | — | — | 2.3% | Jan 22, 2014 | Open redirect vulnerability in Cisco MediaSense allows remote attackers to redirect users to arbitrary web sites and con... |
| CVE-2014-0670 | — | — | 2.2% | Jan 22, 2014 | Cross-site scripting (XSS) vulnerability in the Search and Play interface in Cisco MediaSense allows remote attackers to... |
| CVE-2014-0669 | — | — | 1.8% | Jan 22, 2014 | The Wireless Session Protocol (WSP) feature in the Gateway GPRS Support Node (GGSN) component on Cisco ASR 5000 series d... |
| CVE-2014-1620 | — | — | 1.2% | Jan 21, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in add.php in HIOX Guest Book (HGB) 5.0 allow remote attackers to in... |
| CVE-2014-1619 | — | — | 2.3% | Jan 21, 2014 | Multiple SQL injection vulnerabilities in Cubic CMS 5.1.1, 5.1.2, and 5.2 allow remote attackers to execute arbitrary SQ... |
| CVE-2014-1618 | — | — | 3.3% | Jan 21, 2014 | Multiple SQL injection vulnerabilities in UAEPD Shopping Cart Script allow remote attackers to execute arbitrary SQL com... |
| CVE-2014-1452 | — | — | 1.9% | Jan 21, 2014 | Stack-based buffer overflow in lib/snmpagent.c in bsnmpd, as used in FreeBSD 8.3 through 10.0, allows remote attackers t... |
| CVE-2014-0753 | — | — | 2.5% | Jan 21, 2014 | Stack-based buffer overflow in the SCADA server in Ecava IntegraXor before 4.1.4390 allows remote attackers to cause a d... |
| CVE-2014-0010 | — | — | 1.1% | Jan 20, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in user/profile/index.php in Moodle through 2.2.11, 2.3.x bef... |
| CVE-2014-0009 | — | — | 1.2% | Jan 20, 2014 | course/loginas.php in Moodle through 2.2.11, 2.3.x before 2.3.11, 2.4.x before 2.4.8, 2.5.x before 2.5.4, and 2.6.x befo... |
| CVE-2014-0008 | — | — | 1.8% | Jan 20, 2014 | lib/adminlib.php in Moodle through 2.3.11, 2.4.x before 2.4.8, 2.5.x before 2.5.4, and 2.6.x before 2.6.1 logs cleartext... |
| CVE-2014-0668 | — | — | 1.5% | Jan 20, 2014 | Cross-site scripting (XSS) vulnerability in the portal in Cisco Secure Access Control System (ACS) allows remote attacke... |
| CVE-2014-1446 | — | — | 0.6% | Jan 18, 2014 | The yam_ioctl function in drivers/net/hamradio/yam.c in the Linux kernel before 3.12.8 does not initialize a certain str... |
| CVE-2014-1445 | — | — | 0.4% | Jan 18, 2014 | The wanxl_ioctl function in drivers/net/wan/wanxl.c in the Linux kernel before 3.11.7 does not properly initialize a cer... |
| CVE-2014-1444 | — | — | 0.3% | Jan 18, 2014 | The fst_get_iface function in drivers/net/wan/farsync.c in the Linux kernel before 3.11.7 does not properly initialize a... |
| CVE-2014-1438 | — | — | 0.7% | Jan 18, 2014 | The restore_fpu_checking function in arch/x86/include/asm/fpu-internal.h in the Linux kernel before 3.12.8 on the AMD K7... |
| CVE-2014-1211 | — | — | 1.3% | Jan 17, 2014 | Cross-site request forgery (CSRF) vulnerability in VMware vCloud Director 5.1.x before 5.1.3 allows remote attackers to ... |
| CVE-2014-1208 | — | — | 0.7% | Jan 17, 2014 | VMware Workstation 9.x before 9.0.1, VMware Player 5.x before 5.0.1, VMware Fusion 5.x before 5.0.1, VMware ESXi 4.0 thr... |
| CVE-2014-1207 | — | — | 2.8% | Jan 17, 2014 | VMware ESXi 4.0 through 5.1 and ESX 4.0 and 4.1 allow remote attackers to cause a denial of service (NULL pointer derefe... |
| CVE-2014-0792 | — | — | 2.8% | Jan 17, 2014 | Sonatype Nexus 1.x and 2.x before 2.7.1 allows remote attackers to create arbitrary objects and execute arbitrary code v... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now