2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0667 | — | — | 1.4% | Jan 16, 2014 | The RMI interface in Cisco Secure Access Control System (ACS) does not properly enforce authorization requirements, whic... |
| CVE-2014-0666 | — | — | 5.5% | Jan 16, 2014 | Directory traversal vulnerability in the Send Screen Capture implementation in Cisco Jabber 9.2(.1) and earlier on Windo... |
| CVE-2014-0650 | — | — | 3.4% | Jan 16, 2014 | The web interface in Cisco Secure Access Control System (ACS) 5.x before 5.4 Patch 3 allows remote attackers to execute ... |
| CVE-2014-0649 | — | — | 2.6% | Jan 16, 2014 | The RMI interface in Cisco Secure Access Control System (ACS) 5.x before 5.5 does not properly enforce authorization req... |
| CVE-2014-0648 | — | — | 5.9% | Jan 16, 2014 | The RMI interface in Cisco Secure Access Control System (ACS) 5.x before 5.5 does not properly enforce authentication an... |
| CVE-2014-1473 | — | — | 0.7% | Jan 16, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Enterprise Manager in McAfee Vulnerability Manager (MV... |
| CVE-2014-1472 | — | — | 2.0% | Jan 16, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the Enterprise Manager in McAfee Vulnerability Manager (MVM) 7.5.... |
| CVE-2014-1448 | — | — | — | Jan 15, 2014 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-1447. Reason: This candidate is a reservation ... |
| CVE-2014-0496 | HIGH | 8.8 | 40.2% | Jan 15, 2014 | Use-after-free vulnerability in Adobe Reader and Acrobat 10.x before 10.1.9 and 11.x before 11.0.06 on Windows and Mac O... |
| CVE-2014-0495 | — | — | 3.9% | Jan 15, 2014 | Adobe Reader and Acrobat 10.x before 10.1.9 and 11.x before 11.0.06 on Windows and Mac OS X allow attackers to execute a... |
| CVE-2014-0493 | — | — | 5.1% | Jan 15, 2014 | Adobe Reader and Acrobat 10.x before 10.1.9 and 11.x before 11.0.06 on Windows and Mac OS X allow attackers to execute a... |
| CVE-2014-0492 | — | — | 5.7% | Jan 15, 2014 | Adobe Flash Player before 11.7.700.260 and 11.8.x and 11.9.x before 12.0.0.38 on Windows and Mac OS X and before 11.2.20... |
| CVE-2014-0491 | — | — | 7.1% | Jan 15, 2014 | Adobe Flash Player before 11.7.700.260 and 11.8.x and 11.9.x before 12.0.0.38 on Windows and Mac OS X and before 11.2.20... |
| CVE-2014-0262 | — | — | 2.2% | Jan 15, 2014 | win32k.sys in the kernel-mode drivers in Microsoft Windows 7 SP1 and Server 2008 R2 SP1 does not properly consider threa... |
| CVE-2014-0261 | — | — | 10.3% | Jan 15, 2014 | Microsoft Dynamics AX 4.0 SP2, 2009 SP1, 2012, and 2012 R2 allows remote authenticated users to cause a denial of servic... |
| CVE-2014-0260 | — | — | 17.8% | Jan 15, 2014 | Microsoft Word 2003 SP3, 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT; Office Compatibility Pack SP3; Word Viewer; Shar... |
| CVE-2014-0259 | — | — | 16.5% | Jan 15, 2014 | Microsoft Word 2007 SP3 and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code or cause a de... |
| CVE-2014-0258 | — | — | 15.6% | Jan 15, 2014 | Microsoft Word 2003 SP3 and 2007 SP3, Office Compatibility Pack SP3, and Word Viewer allow remote attackers to execute a... |
| CVE-2014-0665 | — | — | 1.4% | Jan 15, 2014 | The RBAC implementation in Cisco Identity Services Engine (ISE) Software does not properly verify privileges for support... |
| CVE-2014-1466 | — | — | 2.2% | Jan 15, 2014 | SQL injection vulnerability in CSP MySQL User Manager 2.3 allows remote attackers to execute arbitrary SQL commands via ... |
| CVE-2014-1206 | — | — | 2.6% | Jan 15, 2014 | SQL injection vulnerability in the password reset page in Open Web Analytics (OWA) before 1.5.5 allows remote attackers ... |
| CVE-2014-1201 | — | — | 29.5% | Jan 15, 2014 | Buffer overflow in the INetViewX ActiveX control in the Lorex Edge LH310 and Edge+ LH320 series with firmware 7-35-28-1B... |
| CVE-2014-0445 | — | — | 1.4% | Jan 15, 2014 | Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.52 and 8.53... |
| CVE-2014-0444 | — | — | 1.1% | Jan 15, 2014 | Unspecified vulnerability in the Oracle AutoVue Electro-Mechanical Professional component in Oracle Supply Chain Product... |
| CVE-2014-0443 | — | — | 1.5% | Jan 15, 2014 | Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.52 allows r... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now