2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-9331 | — | — | 4.6% | Feb 4, 2015 | Cross-site request forgery (CSRF) vulnerability in ZOHO ManageEngine Desktop Central before 9 build 90130 allows remote ... |
| CVE-2014-7864 | — | — | 22.7% | Feb 4, 2015 | Multiple SQL injection vulnerabilities in the FailOverHelperServlet (aka FailServlet) servlet in ZOHO ManageEngine OpMan... |
| CVE-2014-8021 | — | — | 1.8% | Feb 3, 2015 | Cross-site scripting (XSS) vulnerability in Cisco AnyConnect Secure Mobility Client 3.1(.02043) and earlier and Cisco Ho... |
| CVE-2014-8013 | — | — | 0.3% | Feb 3, 2015 | The TACACS+ command-authorization implementation in Cisco NX-OS allows local users to cause a denial of service (device ... |
| CVE-2014-9633 | — | — | 8.1% | Feb 3, 2015 | The bdisk.sys driver in COMODO Backup before 4.4.1.23 allows remote attackers to gain privileges via a crafted device ha... |
| CVE-2014-9574 | — | — | 2.6% | Feb 3, 2015 | Directory traversal vulnerability in install.php in FluxBB before 1.5.8 allows remote attackers to include and execute a... |
| CVE-2014-9568 | — | — | 0.4% | Feb 3, 2015 | puppetlabs-rabbitmq 3.0 through 4.1 stores the RabbitMQ Erlang cookie value in the facts of a node, which allows local u... |
| CVE-2014-9559 | — | — | 0.9% | Feb 3, 2015 | Cross-site scripting (XSS) vulnerability in SnipSnap 0.5.2a, 1.0b1, and 1.0b2 allows remote attackers to inject arbitrar... |
| CVE-2014-9556 | — | — | 2.8% | Feb 3, 2015 | Integer overflow in the qtmd_decompress function in libmspack 0.4 allows remote attackers to cause a denial of service (... |
| CVE-2014-9328 | — | — | 3.2% | Feb 3, 2015 | ClamAV before 0.98.6 allows remote attackers to have unspecified impact via a crafted upack packer file, related to a "h... |
| CVE-2014-8779 | — | — | 1.4% | Feb 3, 2015 | Pexip Infinity before 8 uses the same SSH host keys across different customers' installations, which allows man-in-the-m... |
| CVE-2014-5360 | — | — | 1.0% | Feb 3, 2015 | Cross-site scripting (XSS) vulnerability in the admin interface in LANDESK Management Suite before 9.6 SP1 allows remote... |
| CVE-2014-8613 | — | — | 2.8% | Feb 2, 2015 | The sctp module in FreeBSD 10.1 before p5, 10.0 before p17, 9.3 before p9, and 8.4 before p23 allows remote attackers to... |
| CVE-2014-8612 | — | — | 0.9% | Feb 2, 2015 | Multiple array index errors in the Stream Control Transmission Protocol (SCTP) module in FreeBSD 10.1 before p5, 10.0 be... |
| CVE-2014-0998 | — | — | 0.9% | Feb 2, 2015 | Integer signedness error in the vt console driver (formerly Newcons) in FreeBSD 9.3 before p10 and 10.1 before p6 allows... |
| CVE-2014-8918 | — | — | 0.5% | Feb 2, 2015 | IBM Security AppScan Standard 8.x and 9.x before 9.0.1.1 FP1 does not properly verify X.509 certificates from SSL server... |
| CVE-2014-7882 | — | — | 2.0% | Feb 2, 2015 | Unspecified vulnerability in HP SiteScope 11.1x and 11.2x allows remote authenticated users to gain privileges via unkno... |
| CVE-2014-6170 | — | — | 1.4% | Feb 2, 2015 | The HTTPInput node in IBM WebSphere Message Broker 7.0 before 7.0.0.8 and 8.0 before 8.0.0.6 and IBM Integration Bus 9.0... |
| CVE-2014-6141 | — | — | 1.8% | Feb 2, 2015 | IBM Tivoli Monitoring (ITM) 6.2.0 through FP03, 6.2.1 through FP04, 6.2.2 through FP09, 6.2.3 through FP05, and 6.3.0 be... |
| CVE-2014-6136 | — | — | 1.2% | Feb 2, 2015 | IBM Security AppScan Standard 8.x and 9.x before 9.0.1.1 FP1 supports unencrypted sessions, which allows remote attacker... |
| CVE-2014-9200 | — | — | 5.6% | Feb 1, 2015 | Stack-based buffer overflow in an unspecified DLL file in a DTM development kit in Schneider Electric Unity Pro, SoMachi... |
| CVE-2014-8630 | — | — | 2.0% | Feb 1, 2015 | Bugzilla before 4.0.16, 4.1.x and 4.2.x before 4.2.12, 4.3.x and 4.4.x before 4.4.7, and 5.x before 5.0rc1 allows remote... |
| CVE-2014-7270 | — | — | 0.6% | Feb 1, 2015 | Cross-site request forgery (CSRF) vulnerability on ASUS JAPAN RT-AC87U routers with firmware 3.0.0.4.378.3754 and earlie... |
| CVE-2014-7269 | — | — | 1.9% | Feb 1, 2015 | ASUS JAPAN RT-AC87U routers with firmware 3.0.0.4.378.3754 and earlier, RT-AC68U routers with firmware 3.0.0.4.376.3715 ... |
| CVE-2014-7266 | — | — | 1.8% | Feb 1, 2015 | Algorithmic complexity vulnerability in Cybozu Remote Service Manager through 2.3.0 and 3.x through 3.1.2 allows remote ... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now