2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-8809 | — | — | 1.7% | Dec 24, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the WP Symposium plugin before 14.11 for WordPress allow remote a... |
| CVE-2014-8138 | — | — | 18.5% | Dec 24, 2014 | Heap-based buffer overflow in the jp2_decode function in JasPer 1.900.1 and earlier allows remote attackers to cause a d... |
| CVE-2014-8137 | — | — | 14.5% | Dec 24, 2014 | Double free vulnerability in the jas_iccattrval_destroy function in JasPer 1.900.1 and earlier allows remote attackers t... |
| CVE-2014-4322 | — | — | 2.0% | Dec 24, 2014 | drivers/misc/qseecom.c in the QSEECOM driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Andr... |
| CVE-2014-6188 | — | — | 1.5% | Dec 24, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in IBM WebSphere Service Registry and Repository (WSRR) 6.3.x before... |
| CVE-2014-6187 | — | — | 0.9% | Dec 24, 2014 | Multiple cross-site request forgery (CSRF) vulnerabilities in IBM WebSphere Service Registry and Repository (WSRR) 6.3.x... |
| CVE-2014-6186 | — | — | 1.8% | Dec 24, 2014 | IBM WebSphere Service Registry and Repository (WSRR) 6.3.x before 6.3.0.5, 7.0.x through 7.0.0.5, 7.5.x before 7.5.0.3, ... |
| CVE-2014-6181 | — | — | 1.6% | Dec 24, 2014 | IBM WebSphere Service Registry and Repository (WSRR) 7.0.x before 7.0.0.5 does not perform access-control checks for con... |
| CVE-2014-6180 | — | — | 1.4% | Dec 24, 2014 | Cross-site scripting (XSS) vulnerability in the Web UI in IBM WebSphere Service Registry and Repository (WSRR) 7.0.x bef... |
| CVE-2014-6179 | — | — | 1.8% | Dec 24, 2014 | Cross-site scripting (XSS) vulnerability in the Web UI in IBM WebSphere Service Registry and Repository (WSRR) 7.5.x bef... |
| CVE-2014-6178 | — | — | 1.4% | Dec 24, 2014 | Cross-site scripting (XSS) vulnerability in the widgets in IBM WebSphere Service Registry and Repository (WSRR) 7.5.x be... |
| CVE-2014-6177 | — | — | 1.6% | Dec 24, 2014 | IBM WebSphere Service Registry and Repository (WSRR) 7.0.x before 7.0.0.5 and 7.5.x before 7.5.0.3 does not perform acce... |
| CVE-2014-6155 | — | — | 2.4% | Dec 24, 2014 | Multiple directory traversal vulnerabilities in the ServiceRegistry UI in IBM WebSphere Service Registry and Repository ... |
| CVE-2014-6153 | — | — | 2.0% | Dec 24, 2014 | The Web UI in IBM WebSphere Service Registry and Repository (WSRR) 6.3.x through 6.3.0.5, 7.0.x through 7.0.0.5, 7.5.x t... |
| CVE-2014-6132 | — | — | 1.6% | Dec 24, 2014 | Cross-site scripting (XSS) vulnerability in the Web UI in IBM WebSphere Service Registry and Repository (WSRR) 6.3 throu... |
| CVE-2014-3569 | — | — | 20.6% | Dec 24, 2014 | The ssl23_get_client_hello function in s23_srvr.c in OpenSSL 0.9.8zc, 1.0.0o, and 1.0.1j does not properly handle attemp... |
| CVE-2014-7999 | — | — | 0.7% | Dec 24, 2014 | Cisco-Meraki MS, MR, and MX devices with firmware before 2014-09-24 allow remote authenticated users to install arbitrar... |
| CVE-2014-7995 | — | — | 0.3% | Dec 24, 2014 | Cisco-Meraki MS, MR, and MX devices with firmware before 2014-09-24 allow physically proximate attackers to obtain shell... |
| CVE-2014-7994 | — | — | 0.7% | Dec 24, 2014 | Cisco-Meraki MS, MR, and MX devices with firmware before 2014-09-24 allow remote attackers to execute arbitrary commands... |
| CVE-2014-7993 | — | — | 0.6% | Dec 24, 2014 | Cisco-Meraki MS, MR, and MX devices with firmware before 2014-09-24 allow remote attackers to obtain sensitive credentia... |
| CVE-2014-9412 | — | — | 3.2% | Dec 23, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in NetIQ Access Manager (NAM) 4.x before 4.1 allow remote attackers ... |
| CVE-2014-9115 | — | — | 2.7% | Dec 23, 2014 | SQL injection vulnerability in the rate_picture function in include/functions_rate.inc.php in Piwigo before 2.5.5, 2.6.x... |
| CVE-2014-5217 | — | — | 1.4% | Dec 23, 2014 | Cross-site request forgery (CSRF) vulnerability in nps/servlet/webacc in the Administration Console server in NetIQ Acce... |
| CVE-2014-5216 | — | — | 3.2% | Dec 23, 2014 | Multiple cross-site scripting (XSS) vulnerabilities in NetIQ Access Manager (NAM) 4.x before 4.0.1 HF3 allow remote atta... |
| CVE-2014-5215 | — | — | 1.8% | Dec 23, 2014 | NetIQ Access Manager (NAM) 4.x before 4.0.1 HF3 allows remote authenticated administrators to discover service-account p... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now