2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-8012 | — | — | 0.9% | Dec 18, 2014 | Cross-site scripting (XSS) vulnerability in the WebVPN Portal Login page in Cisco Adaptive Security Appliance (ASA) Soft... |
| CVE-2014-6174 | — | — | 1.5% | Dec 18, 2014 | IBM WebSphere Application Server 7.x before 7.0.0.37, 8.0.x before 8.0.0.10, and 8.5.x before 8.5.5.4 allows remote atta... |
| CVE-2014-6167 | — | — | 1.8% | Dec 18, 2014 | Cross-site scripting (XSS) vulnerability in the URL rewriting feature in IBM WebSphere Application Server 7.x before 7.0... |
| CVE-2014-6166 | — | — | 2.0% | Dec 18, 2014 | The Communications Enabled Applications (CEA) service in IBM WebSphere Application Server 8.0.x before 8.0.0.10 and 8.5.... |
| CVE-2014-6164 | — | — | 2.1% | Dec 18, 2014 | IBM WebSphere Application Server 8.0.x before 8.0.0.10 and 8.5.x before 8.5.5.4 allows remote attackers to spoof OpenID ... |
| CVE-2014-6089 | — | — | 1.3% | Dec 18, 2014 | IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.... |
| CVE-2014-6088 | — | — | 1.4% | Dec 18, 2014 | IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.... |
| CVE-2014-6087 | — | — | 1.4% | Dec 18, 2014 | IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.... |
| CVE-2014-6086 | — | — | 1.4% | Dec 18, 2014 | IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.... |
| CVE-2014-6084 | — | — | 1.4% | Dec 18, 2014 | IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.... |
| CVE-2014-6083 | — | — | 1.4% | Dec 18, 2014 | IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.... |
| CVE-2014-6082 | — | — | 1.4% | Dec 18, 2014 | IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.... |
| CVE-2014-6080 | — | — | 1.0% | Dec 18, 2014 | SQL injection vulnerability in IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for W... |
| CVE-2014-6078 | — | — | 1.4% | Dec 18, 2014 | IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.... |
| CVE-2014-6077 | — | — | 0.6% | Dec 18, 2014 | Cross-site request forgery (CSRF) vulnerability in IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security ... |
| CVE-2014-6076 | — | — | 1.0% | Dec 18, 2014 | IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.... |
| CVE-2014-9406 | — | — | 2.1% | Dec 18, 2014 | ARRIS Touchstone TG862G/CT Telephony Gateway with firmware 7.6.59S.CT and earlier has a default password of password for... |
| CVE-2014-8120 | — | — | 0.3% | Dec 18, 2014 | The agent in Thermostat before 1.0.6, when using unspecified configurations, allows local users to obtain the JMX manage... |
| CVE-2014-8108 | — | — | 9.7% | Dec 18, 2014 | The mod_dav_svn Apache HTTPD server module in Apache Subversion 1.7.x before 1.7.19 and 1.8.x before 1.8.11 allows remot... |
| CVE-2014-3580 | — | — | 10.7% | Dec 18, 2014 | The mod_dav_svn Apache HTTPD server module in Apache Subversion 1.x before 1.7.19 and 1.8.x before 1.8.11 allows remote ... |
| CVE-2014-9388 | — | — | 2.0% | Dec 17, 2014 | bug_report.php in MantisBT before 1.2.18 allows remote attackers to assign arbitrary issues via the handler_id parameter... |
| CVE-2014-9387 | — | — | 4.6% | Dec 17, 2014 | SAP BusinessObjects Edge 4.1 allows remote attackers to obtain the SI_PLATFORM_SEARCH_SERVER_LOGON_TOKEN token and gain ... |
| CVE-2014-8553 | — | — | 2.4% | Dec 17, 2014 | The mci_account_get_array_by_id function in api/soap/mc_account_api.php in MantisBT before 1.2.18 allows remote attacker... |
| CVE-2014-8117 | — | — | 5.9% | Dec 17, 2014 | softmagic.c in file before 5.21 does not properly limit recursion, which allows remote attackers to cause a denial of se... |
| CVE-2014-8116 | — | — | 4.4% | Dec 17, 2014 | The ELF parser (readelf.c) in file before 5.21 allows remote attackers to cause a denial of service (CPU consumption or ... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now