2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2014-8702——Wonder CMS 2014 allows remote attackers to obtain sensitive information by logging into the application with an array fo...
CVE-2014-8701——Wonder CMS 2014 allows remote attackers to obtain sensitive information by viewing /files/password, which reveals the un...
CVE-2014-9921——Information disclosure vulnerability in McAfee (now Intel Security) Cloud Analysis and Deconstructive Services (CADS) 1....
CVE-2014-9920——Unauthorized execution of binary vulnerability in McAfee (now Intel Security) McAfee Application Control (MAC) 6.0.0 bef...
CVE-2014-3926——Cross-site scripting (XSS) vulnerability in lg.cgi in Cougar LG 1.9 allows remote attackers to inject arbitrary web scri...
CVE-2014-9645——The add_probe function in modutils/modprobe.c in BusyBox before 1.23.0 allows local users to bypass intended restriction...
CVE-2014-4677——The installPackage function in the installerHelper subcomponent in Libmacgpg in GPG Suite before 2015.06 allows local us...
CVE-2014-9772——The validator package before 2.0.0 for Node.js allows remote attackers to bypass the cross-site scripting (XSS) filter v...
CVE-2014-8362——Vivint Sky Control Panel 1.1.1.9926 allows remote attackers to enable and disable the alarm system and modify other secu...
CVE-2014-9755——The hardware VPN client in Viprinet MultichannelVPN Router 300 version 2013070830/2013080900 does not validate the remot...
CVE-2014-9754——The hardware VPN client in Viprinet MultichannelVPN Router 300 version 2013070830/2013080900 does not validate the remot...
CVE-2014-2045——Multiple cross-site scripting (XSS) vulnerabilities in the old and new interfaces in Viprinet Multichannel VPN Router 30...
CVE-2014-9913——Buffer overflow in the list_files function in list.c in Info-Zip UnZip 6.0 allows remote attackers to cause a denial of ...
CVE-2014-9910——An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execu...
CVE-2014-9909——An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execu...
CVE-2014-9912——The get_icu_disp_value_src_php function in ext/intl/locale/locale_methods.c in PHP before 5.3.29, 5.4.x before 5.4.30, a...
CVE-2014-9911——Stack-based buffer overflow in the ures_getByKeyWithFallback function in common/uresbund.cpp in International Components...
CVE-2014-8241——XRegion in TigerVNC allows remote VNC servers to cause a denial of service (NULL pointer dereference) by leveraging fail...
CVE-2014-9299——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2015-8870. Reason: This candidate is a duplicate of...
CVE-2014-2146——The Zone-Based Firewall (ZBFW) functionality in Cisco IOS, possibly 15.4 and earlier, and IOS XE, possibly 3.13 and earl...
CVE-2014-9906——Use-after-free vulnerability in DBD::mysql before 4.029 allows attackers to cause a denial of service (program crash) or...
CVE-2014-9900——The ethtool_get_wol function in net/core/ethtool.c in the Linux kernel through 4.7, as used in Android before 2016-08-05...
CVE-2014-9899——drivers/usb/host/ehci-msm2.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices omits certain mi...
CVE-2014-9898——arch/arm/mach-msm/qdsp6v2/ultrasound/usf.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (201...
CVE-2014-9897——sound/soc/msm/qdsp6v2/msm-lsm-client.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 devices does n...

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now