2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-8642 | — | — | 1.6% | Jan 14, 2015 | Mozilla Firefox before 35.0 and SeaMonkey before 2.32 do not consider the id-pkix-ocsp-nocheck extension in deciding whe... |
| CVE-2014-8641 | — | — | 4.2% | Jan 14, 2015 | Use-after-free vulnerability in the WebRTC implementation in Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4, ... |
| CVE-2014-8640 | — | — | 2.4% | Jan 14, 2015 | The mozilla::dom::AudioParamTimeline::AudioNodeInputValue function in the Web Audio API implementation in Mozilla Firefo... |
| CVE-2014-8639 | — | — | 1.9% | Jan 14, 2015 | Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4, Thunderbird before 31.4, and SeaMonkey before 2.32 do not pro... |
| CVE-2014-8638 | — | — | 1.0% | Jan 14, 2015 | The navigator.sendBeacon implementation in Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4, Thunderbird before... |
| CVE-2014-8637 | — | — | 2.2% | Jan 14, 2015 | Mozilla Firefox before 35.0 and SeaMonkey before 2.32 do not properly initialize memory for BMP images, which allows rem... |
| CVE-2014-8636 | — | — | 65.7% | Jan 14, 2015 | The XrayWrapper implementation in Mozilla Firefox before 35.0 and SeaMonkey before 2.32 does not properly interact with ... |
| CVE-2014-8635 | — | — | 4.1% | Jan 14, 2015 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 35.0 and SeaMonkey before 2.32 allo... |
| CVE-2014-8634 | — | — | 3.9% | Jan 14, 2015 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4,... |
| CVE-2014-5233 | — | — | 0.4% | Jan 14, 2015 | The Siemens SIMATIC WinCC Sm@rtClient app before 1.0.2 for iOS allows physically proximate attackers to discover Sm@rtSe... |
| CVE-2014-5232 | — | — | 0.4% | Jan 14, 2015 | The Siemens SIMATIC WinCC Sm@rtClient app before 1.0.2 for iOS allows local users to bypass an intended application-pass... |
| CVE-2014-5231 | — | — | 0.4% | Jan 14, 2015 | The Siemens SIMATIC WinCC Sm@rtClient app before 1.0.2 for iOS allows physically proximate attackers to extract the pass... |
| CVE-2014-10038 | — | — | 2.3% | Jan 13, 2015 | SQL injection vulnerability in agenda/indexdate.php in DomPHP 0.83 and earlier allows remote attackers to execute arbitr... |
| CVE-2014-10037 | — | — | 19.4% | Jan 13, 2015 | Directory traversal vulnerability in DomPHP 0.83 and earlier allows remote attackers to have unspecified impact via a ..... |
| CVE-2014-10036 | — | — | 1.9% | Jan 13, 2015 | Cross-site scripting (XSS) vulnerability in JetBrains TeamCity before 8.1 allows remote attackers to inject arbitrary we... |
| CVE-2014-10035 | — | — | 3.5% | Jan 13, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in the admin area in couponPHP before 1.2.0 allow remote administrat... |
| CVE-2014-10034 | — | — | 2.0% | Jan 13, 2015 | Multiple SQL injection vulnerabilities in the admin area in couponPHP before 1.2.0 allow remote administrators to execut... |
| CVE-2014-10033 | — | — | 1.8% | Jan 13, 2015 | SQL injection vulnerability in the update_zone function in catalog/admin/geo_zones.php in osCommerce Online Merchant 2.3... |
| CVE-2014-10032 | — | — | 1.1% | Jan 13, 2015 | SQL injection vulnerability in news_popup.php in Taboada MacroNews 1.0 allows remote authenticated users to execute arbi... |
| CVE-2014-10031 | — | — | 3.7% | Jan 13, 2015 | Buffer overflow in the IMAPd service in Qualcomm Eudora WorldMail 9.0.333.0 allows remote attackers to execute arbitrary... |
| CVE-2014-100039 | — | — | 0.7% | Jan 13, 2015 | mbae.sys in Malwarebytes Anti-Exploit before 1.05.1.2014 allows local users to cause a denial of service (crash) via a c... |
| CVE-2014-100038 | — | — | 1.2% | Jan 13, 2015 | Cross-site scripting (XSS) vulnerability in Storytlr 1.3.dev and earlier allows remote attackers to inject arbitrary web... |
| CVE-2014-100037 | — | — | 1.0% | Jan 13, 2015 | Cross-site scripting (XSS) vulnerability in Storytlr 1.3.dev and earlier allows remote attackers to inject arbitrary web... |
| CVE-2014-100036 | — | — | 1.9% | Jan 13, 2015 | Cross-site scripting (XSS) vulnerability in FlatPress 1.0.2 allows remote attackers to inject arbitrary web script or HT... |
| CVE-2014-100035 | — | — | 1.2% | Jan 13, 2015 | SQL injection vulnerability in the ticket grid in the admin interface in LicensePal ArcticDesk before 1.2.5 allows remot... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now