2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-0194 | — | — | — | May 19, 2015 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2014-8384 | — | — | 3.2% | May 18, 2015 | The InFocus IN3128HD projector with firmware 0.26 does not restrict access to cgi-bin/webctrl.cgi.elf, which allows remo... |
| CVE-2014-8383 | — | — | 3.1% | May 18, 2015 | The InFocus IN3128HD projector with firmware 0.26 allows remote attackers to bypass authentication via a direct request ... |
| CVE-2014-9204 | — | — | 1.6% | May 17, 2015 | Stack-based buffer overflow in OPCTest.exe in Rockwell Automation RSLinx Classic before 3.73.00 allows remote attackers ... |
| CVE-2014-8162 | — | — | 2.7% | May 14, 2015 | XML external entity (XXE) in the RPC interface in Spacewalk and Red Hat Network (RHN) Satellite 5.7 and earlier allows r... |
| CVE-2014-1902 | — | — | 0.8% | May 14, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Y-Cam camera models SD range YCB003, YCK003, and YCW003; S range ... |
| CVE-2014-1901 | — | — | 1.3% | May 14, 2015 | Y-Cam camera models SD range YCB003, YCK003, and YCW003; S range YCB004, YCK004, YCW004; EyeBall YCEB03; Bullet VGA YCBL... |
| CVE-2014-1900 | — | — | 1.5% | May 14, 2015 | Y-Cam camera models SD range YCB003, YCK003, and YCW003; S range YCB004, YCK004, YCW004; EyeBall YCEB03; Bullet VGA YCBL... |
| CVE-2014-9160 | — | — | 10.7% | May 13, 2015 | Multiple heap-based buffer overflows in Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows ... |
| CVE-2014-9326 | — | — | 0.8% | May 12, 2015 | The automatic signature update functionality in the (1) Phone Home feature in F5 BIG-IP LTM, AAM, AFM, Analytics, APM, G... |
| CVE-2014-8619 | — | — | 1.4% | May 12, 2015 | Cross-site scripting (XSS) vulnerability in the autolearn configuration page in Fortinet FortiWeb 5.1.2 through 5.3.4 al... |
| CVE-2014-8618 | — | — | 1.4% | May 12, 2015 | Cross-site scripting (XSS) vulnerability in the theme login page in Fortinet FortiADC D models before 4.2 allows remote ... |
| CVE-2014-8616 | — | — | 1.8% | May 12, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Fortinet FortiOS 5.2.x before 5.2.3 allow remote attackers to inj... |
| CVE-2014-9716 | — | — | 2.2% | May 8, 2015 | Cross-site scripting (XSS) vulnerability in WebODF before 0.5.4 allows remote attackers to inject arbitrary web script o... |
| CVE-2014-0919 | — | — | 1.9% | May 8, 2015 | IBM DB2 9.5 through 10.5 on Linux, UNIX, and Windows stores passwords during the processing of certain SQL statements by... |
| CVE-2014-8361 | CRITICAL | 9.8 | 100.0% | May 1, 2015 | The miniigd SOAP service in Realtek SDK allows remote attackers to execute arbitrary code via a crafted NewInternalClien... |
| CVE-2014-3598 | — | — | 2.0% | May 1, 2015 | The Jpeg2KImagePlugin plugin in Pillow before 2.5.3 allows remote attackers to cause a denial of service via a crafted i... |
| CVE-2014-6092 | — | — | 1.3% | Apr 27, 2015 | IBM Curam Social Program Management (SPM) 5.2 before SP6 EP6, 6.0 SP2 before EP26, 6.0.4 before 6.0.4.6, and 6.0.5 befor... |
| CVE-2014-6090 | — | — | 0.6% | Apr 27, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the (1) DataMappingEditorCommands, (2) DatastoreEditorComm... |
| CVE-2014-8125 | — | — | 2.7% | Apr 21, 2015 | XML external entity (XXE) vulnerability in Drools and jBPM before 6.2.0 allows remote attackers to read arbitrary files ... |
| CVE-2014-8111 | — | — | 7.1% | Apr 21, 2015 | Apache Tomcat Connectors (mod_jk) before 1.2.41 ignores JkUnmount rules for subtrees of previous JkMount rules, which al... |
| CVE-2014-3586 | — | — | 0.4% | Apr 21, 2015 | The default configuration for the Command Line Interface in Red Hat Enterprise Application Platform before 6.4.0 and Wil... |
| CVE-2014-9718 | — | — | 0.4% | Apr 21, 2015 | The (1) BMDMA and (2) AHCI HBA interfaces in the IDE functionality in QEMU 1.0 through 2.1.3 have multiple interpretatio... |
| CVE-2014-5370 | — | — | 7.5% | Apr 21, 2015 | Directory traversal vulnerability in the CFChart servlet (com.naryx.tagfusion.cfm.cfchartServlet) in New Atlanta BlueDra... |
| CVE-2014-5361 | — | — | 0.9% | Apr 21, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in Landesk Management Suite 9.6 and earlier allow remote atta... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now