2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-7913 | — | — | 1.8% | Jul 30, 2015 | The print_option function in dhcp-common.c in dhcpcd through 6.9.1, as used in dhcp.c in dhcpcd 5.x in Android before 5.... |
| CVE-2014-7912 | — | — | 2.7% | Jul 30, 2015 | The get_option function in dhcp.c in dhcpcd before 6.2.0, as used in dhcpcd 5.x in Android before 5.1 and other products... |
| CVE-2014-0611 | — | — | 2.3% | Jul 22, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in WebAccess in Novell GroupWise 2012 before Support Pack 4 and 2014... |
| CVE-2014-9196 | — | — | 2.3% | Jul 20, 2015 | Eaton Cooper Power Systems ProView 4.0 and 5.0 before 5.0 11 on Form 6 controls and Idea and IdeaPLUS relays generates T... |
| CVE-2014-8910 | — | — | 1.9% | Jul 20, 2015 | IBM DB2 9.7 through FP10, 9.8 through FP5, 10.1 before FP5, and 10.5 through FP5 on Linux, UNIX, and Windows allows remo... |
| CVE-2014-8450 | — | — | 4.6% | Jul 15, 2015 | Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader DC Classic before 2015.... |
| CVE-2014-0578 | — | — | 3.6% | Jul 9, 2015 | Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481... |
| CVE-2014-9741 | — | — | 1.8% | Jul 8, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in ESRI ArcGIS for Desktop, ArcGIS for Engine, and ArcGIS for Server... |
| CVE-2014-8175 | — | — | 1.5% | Jul 8, 2015 | Red Hat JBoss Fuse before 6.2.0 allows remote authenticated users to bypass intended restrictions and access the HawtIO ... |
| CVE-2014-5406 | — | — | 1.2% | Jul 6, 2015 | The Hospira LifeCare PCA Infusion System before 7.0 does not validate network traffic associated with sending a (1) drug... |
| CVE-2014-9740 | — | — | 0.9% | Jul 6, 2015 | Cross-site scripting (XSS) vulnerability in the Rules Link module 7.x-1.x before 7.x-1.1 for Drupal allows remote authen... |
| CVE-2014-9739 | — | — | 1.0% | Jul 6, 2015 | Cross-site scripting (XSS) vulnerability in the Node Field module 7.x-2.x before 7.x-2.45 for Drupal allows remote authe... |
| CVE-2014-9738 | — | — | 1.2% | Jul 6, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in the Tournament module 7.x-1.x before 7.x-1.2 for Drupal allow rem... |
| CVE-2014-9737 | — | — | 1.2% | Jul 6, 2015 | Open redirect vulnerability in the Language Switcher Dropdown module 7.x-1.x before 7.x-1.4 for Drupal allows remote att... |
| CVE-2014-3653 | — | — | 1.9% | Jul 6, 2015 | Cross-site scripting (XSS) vulnerability in the template preview function in Foreman before 1.6.1 allows remote attacker... |
| CVE-2014-1836 | — | — | 3.7% | Jul 1, 2015 | Absolute path traversal vulnerability in htdocs/libraries/image-editor/image-edit.php in ImpressCMS before 1.3.6 allows ... |
| CVE-2014-1750 | — | — | 2.1% | Jul 1, 2015 | Open redirect vulnerability in nokia-mapsplaces.php in the Nokia Maps & Places plugin 1.6.6 for WordPress allows remote ... |
| CVE-2014-9735 | — | — | 75.3% | Jun 30, 2015 | The ThemePunch Slider Revolution (revslider) plugin before 3.0.96 for WordPress and Showbiz Pro plugin 1.7.1 and earlier... |
| CVE-2014-9734 | — | — | 20.6% | Jun 30, 2015 | Directory traversal vulnerability in the Slider Revolution (revslider) plugin before 4.2 for WordPress allows remote att... |
| CVE-2014-4768 | — | — | 0.8% | Jun 28, 2015 | IBM Unified Extensible Firmware Interface (UEFI) on Flex System x880 X6, System x3850 X6, and System x3950 X6 devices al... |
| CVE-2014-9230 | — | — | 2.0% | Jun 28, 2015 | Cross-site scripting (XSS) vulnerability in the administration console in the Enforce Server in Symantec Data Loss Preve... |
| CVE-2014-6198 | — | — | 0.8% | Jun 28, 2015 | Cross-site request forgery (CSRF) vulnerability in IBM Security Network Protection 5.3 before 5.3.1 allows remote attack... |
| CVE-2014-4875 | — | — | 2.1% | Jun 24, 2015 | CreateBossCredentials.jar in Toshiba CHEC before 6.6 build 4014 and 6.7 before build 4329 contains a hardcoded AES key, ... |
| CVE-2014-4882 | — | — | 1.7% | Jun 23, 2015 | Aptexx Resident Anywhere does not require authentication, which allows remote attackers to obtain sensitive information ... |
| CVE-2014-8176 | — | — | 16.6% | Jun 12, 2015 | The dtls1_clear_queues function in ssl/d1_lib.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h ... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now