2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2014-8702Wonder CMS 2014 allows remote attackers to obtain sensitive information by logging into the application with an array fo...
CVE-2014-8701Wonder CMS 2014 allows remote attackers to obtain sensitive information by viewing /files/password, which reveals the un...
CVE-2014-9921Information disclosure vulnerability in McAfee (now Intel Security) Cloud Analysis and Deconstructive Services (CADS) 1....
CVE-2014-9920Unauthorized execution of binary vulnerability in McAfee (now Intel Security) McAfee Application Control (MAC) 6.0.0 bef...
CVE-2014-3926Cross-site scripting (XSS) vulnerability in lg.cgi in Cougar LG 1.9 allows remote attackers to inject arbitrary web scri...
CVE-2014-9645The add_probe function in modutils/modprobe.c in BusyBox before 1.23.0 allows local users to bypass intended restriction...
CVE-2014-4677The installPackage function in the installerHelper subcomponent in Libmacgpg in GPG Suite before 2015.06 allows local us...
CVE-2014-9772The validator package before 2.0.0 for Node.js allows remote attackers to bypass the cross-site scripting (XSS) filter v...
CVE-2014-8362Vivint Sky Control Panel 1.1.1.9926 allows remote attackers to enable and disable the alarm system and modify other secu...
CVE-2014-9755The hardware VPN client in Viprinet MultichannelVPN Router 300 version 2013070830/2013080900 does not validate the remot...
CVE-2014-9754The hardware VPN client in Viprinet MultichannelVPN Router 300 version 2013070830/2013080900 does not validate the remot...
CVE-2014-2045Multiple cross-site scripting (XSS) vulnerabilities in the old and new interfaces in Viprinet Multichannel VPN Router 30...
CVE-2014-9913Buffer overflow in the list_files function in list.c in Info-Zip UnZip 6.0 allows remote attackers to cause a denial of ...
CVE-2014-9910An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execu...
CVE-2014-9909An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execu...
CVE-2014-9912The get_icu_disp_value_src_php function in ext/intl/locale/locale_methods.c in PHP before 5.3.29, 5.4.x before 5.4.30, a...
CVE-2014-9911Stack-based buffer overflow in the ures_getByKeyWithFallback function in common/uresbund.cpp in International Components...
CVE-2014-8241XRegion in TigerVNC allows remote VNC servers to cause a denial of service (NULL pointer dereference) by leveraging fail...
CVE-2014-9299Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2015-8870. Reason: This candidate is a duplicate of...
CVE-2014-2146The Zone-Based Firewall (ZBFW) functionality in Cisco IOS, possibly 15.4 and earlier, and IOS XE, possibly 3.13 and earl...
CVE-2014-9906Use-after-free vulnerability in DBD::mysql before 4.029 allows attackers to cause a denial of service (program crash) or...
CVE-2014-9900The ethtool_get_wol function in net/core/ethtool.c in the Linux kernel through 4.7, as used in Android before 2016-08-05...
CVE-2014-9899drivers/usb/host/ehci-msm2.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices omits certain mi...
CVE-2014-9898arch/arm/mach-msm/qdsp6v2/ultrasound/usf.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (201...
CVE-2014-9897sound/soc/msm/qdsp6v2/msm-lsm-client.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices does n...

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now