2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-9195 | — | — | 81.1% | Jan 17, 2015 | Phoenix Contact ProConOs and MultiProg do not require authentication, which allows remote attackers to execute arbitrary... |
| CVE-2014-9194 | — | — | 1.0% | Jan 17, 2015 | Arbiter 1094B GPS Substation Clock allows remote attackers to cause a denial of service (disruption) via crafted radio t... |
| CVE-2014-8143 | — | — | 4.3% | Jan 17, 2015 | Samba 4.0.x before 4.0.24, 4.1.x before 4.1.16, and 4.2.x before 4.2rc4, when an Active Directory Domain Controller (AD ... |
| CVE-2014-5419 | — | — | 2.4% | Jan 17, 2015 | GE Multilink ML800, ML1200, ML1600, and ML2400 switches with firmware 4.2.1 and earlier and Multilink ML810, ML3000, and... |
| CVE-2014-5418 | — | — | 3.2% | Jan 17, 2015 | GE Multilink ML800, ML1200, ML1600, and ML2400 switches with firmware 4.2.1 and earlier and Multilink ML810, ML3000, and... |
| CVE-2014-2355 | — | — | 0.6% | Jan 17, 2015 | The (1) CimView and (2) CimEdit components in GE Proficy HMI/SCADA-CIMPLICITY 8.2 and earlier allow remote attackers to ... |
| CVE-2014-9604 | — | — | 2.4% | Jan 16, 2015 | libavcodec/utvideodec.c in FFmpeg before 2.5.2 does not check for a zero value of a slice height, which allows remote at... |
| CVE-2014-9603 | — | — | 2.0% | Jan 16, 2015 | The vmd_decode function in libavcodec/vmdvideo.c in FFmpeg before 2.5.2 does not validate the relationship between a cer... |
| CVE-2014-9602 | — | — | 2.0% | Jan 16, 2015 | libavcodec/xface.h in FFmpeg before 2.5.2 establishes certain digits and words array dimensions that do not satisfy a re... |
| CVE-2014-9601 | — | — | 5.4% | Jan 16, 2015 | Pillow before 2.7.0 allows remote attackers to cause a denial of service via a compressed text chunk in a PNG image that... |
| CVE-2014-9496 | — | — | 0.6% | Jan 16, 2015 | The sd2_parse_rsrc_fork function in sd2.c in libsndfile allows attackers to have unspecified impact via vectors related ... |
| CVE-2014-9480 | — | — | 1.2% | Jan 16, 2015 | Cross-site scripting (XSS) vulnerability in the Hovercards extension for MediaWiki allows remote attackers to inject arb... |
| CVE-2014-9479 | — | — | 1.2% | Jan 16, 2015 | Cross-site scripting (XSS) vulnerability in the preview in the TemplateSandbox extension for MediaWiki allows remote att... |
| CVE-2014-9478 | — | — | 1.2% | Jan 16, 2015 | Cross-site scripting (XSS) vulnerability in the preview in the ExpandTemplates extension for MediaWiki, when $wgRawHTML ... |
| CVE-2014-9477 | — | — | 1.2% | Jan 16, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in the Listings extension for MediaWiki allow remote attackers to in... |
| CVE-2014-9476 | — | — | 2.2% | Jan 16, 2015 | MediaWiki 1.2x before 1.22.15, 1.23.x before 1.23.8, and 1.24.x before 1.24.1 allows remote attackers to bypass CORS res... |
| CVE-2014-9475 | — | — | 1.4% | Jan 16, 2015 | Cross-site scripting (XSS) vulnerability in thumb.php in MediaWiki before 1.19.23, 1.2x before 1.22.15, 1.23.x before 1.... |
| CVE-2014-9471 | — | — | 7.1% | Jan 16, 2015 | The parse_datetime function in GNU coreutils allows remote attackers to cause a denial of service (crash) or possibly ex... |
| CVE-2014-7814 | — | — | 1.4% | Jan 16, 2015 | SQL injection vulnerability in Red Hat CloudForms 3.1 Management Engine (CFME) 5.3 allows remote authenticated users to ... |
| CVE-2014-6386 | — | — | 2.7% | Jan 16, 2015 | Juniper Junos 11.4 before 11.4R8, 12.1X44 before 12.1X44-D35, 12.1X45 before 12.1X45-D25, 12.1X46 before 12.1X46-D20, 12... |
| CVE-2014-6385 | — | — | 0.6% | Jan 16, 2015 | Juniper Junos 11.4 before 11.4R13, 12.1X44 before 12.1X44-D45, 12.1X46 before 12.1X46-D30, 12.1X47 before 12.1X47-D15, 1... |
| CVE-2014-6384 | — | — | 0.3% | Jan 16, 2015 | Juniper Junos 12.1X44 before 12.1X44-D45, 12.1X46 before 12.1X46-D25, 12.1X47 before 12.1X47-D15, 12.3 before 12.3R9, 13... |
| CVE-2014-6383 | — | — | 2.1% | Jan 16, 2015 | The stateless firewall in Juniper Junos 13.3R3, 14.1R1, and 14.1R2, when using Trio-based PFE modules, does not properly... |
| CVE-2014-6382 | — | — | 1.2% | Jan 16, 2015 | The Juniper MX Series routers with Junos 13.3R3 through 13.3Rx before 13.3R6, 14.1 before 14.1R4, 14.1X50 before 14.1X50... |
| CVE-2014-3692 | — | — | 2.9% | Jan 16, 2015 | The customization template in Red Hat CloudForms 3.1 Management Engine (CFME) 5.3 uses a default password for the root a... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now