2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-10014 | — | — | 2.0% | Jan 13, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in PHPJabbers Event Booking Calendar 2.0 allow remote attacke... |
| CVE-2014-10013 | — | — | 4.7% | Jan 13, 2015 | SQL injection vulnerability in the Another WordPress Classifieds Plugin plugin for WordPress allows remote attackers to ... |
| CVE-2014-10012 | — | — | 1.6% | Jan 13, 2015 | Cross-site scripting (XSS) vulnerability in the Another WordPress Classifieds Plugin plugin for WordPress allows remote ... |
| CVE-2014-10011 | — | — | 10.1% | Jan 13, 2015 | Stack-based buffer overflow in UltraCamLib in the UltraCam ActiveX Control (UltraCamX.ocx) for the TRENDnet SecurView ca... |
| CVE-2014-10010 | — | — | 7.7% | Jan 13, 2015 | Directory traversal vulnerability in PHPJabbers Appointment Scheduler 2.0 allows remote attackers to read arbitrary file... |
| CVE-2014-10009 | — | — | 1.8% | Jan 13, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Stark CRM 1.0 allow remote attackers to inject arbitrary web scri... |
| CVE-2014-10008 | — | — | 1.4% | Jan 13, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in Stark CRM 1.0 allow remote attackers to hijack the authent... |
| CVE-2014-10007 | — | — | 1.2% | Jan 13, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Maian Weblog 4.0 and earlier allow remote attackers to inject arb... |
| CVE-2014-10006 | — | — | 0.6% | Jan 13, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in Maian Uploader 4.0 allow remote attackers to hijack the au... |
| CVE-2014-10005 | — | — | 1.8% | Jan 13, 2015 | Maian Uploader 4.0 allows remote attackers to obtain sensitive information via a request without the height parameter to... |
| CVE-2014-10004 | — | — | 2.1% | Jan 13, 2015 | SQL injection vulnerability in admin/data_files/move.php in Maian Uploader 4.0 allows remote attackers to execute arbitr... |
| CVE-2014-10003 | — | — | 1.9% | Jan 13, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in Maian Uploader 4.0 allow remote attackers to inject arbitrary web... |
| CVE-2014-10002 | — | — | 1.2% | Jan 13, 2015 | Unspecified vulnerability in JetBrains TeamCity before 8.1 allows remote attackers to obtain sensitive information via u... |
| CVE-2014-100010 | — | — | 1.2% | Jan 13, 2015 | Cross-site scripting (XSS) vulnerability in ClanSphere 2011.4 allows remote attackers to inject arbitrary web script or ... |
| CVE-2014-10001 | — | — | 2.3% | Jan 13, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in PHPJabbers Appointment Scheduler 2.0 allow remote attacker... |
| CVE-2014-100009 | — | — | 2.2% | Jan 13, 2015 | The Joomlaskin JS Multi Hotel (aka JS MultiHotel and Js-Multi-Hotel) plugin 2.2.1 and earlier for WordPress allows remot... |
| CVE-2014-100008 | — | — | 2.0% | Jan 13, 2015 | Cross-site scripting (XSS) vulnerability in includes/delete_img.php in the Joomlaskin JS Multi Hotel (aka JS MultiHotel ... |
| CVE-2014-100007 | — | — | 2.0% | Jan 13, 2015 | Cross-site scripting (XSS) vulnerability in the HK Exif Tags plugin before 1.12 for WordPress allows remote authenticate... |
| CVE-2014-100006 | — | — | 1.1% | Jan 13, 2015 | Multiple cross-site scripting (XSS) vulnerabilities in modules_v3/googlemap/wt_v3_street_view.php in webtrees before 1.5... |
| CVE-2014-100005 | HIGH | 8 | 42.4% | Jan 13, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in D-Link DIR-600 router (rev. Bx) with firmware before 2.17b... |
| CVE-2014-100004 | — | — | 2.0% | Jan 13, 2015 | Cross-site scripting (XSS) vulnerability in Sitecore CMS before 7.0 Update-4 (rev. 140120) allows remote attackers to in... |
| CVE-2014-100003 | — | — | 4.4% | Jan 13, 2015 | SQL injection vulnerability in includes/ym-download_functions.include.php in the Code Futures YourMembers plugin for Wor... |
| CVE-2014-100002 | — | — | 59.9% | Jan 13, 2015 | Directory traversal vulnerability in ManageEngine SupportCenter Plus 7.9 before 7917 allows remote attackers to read arb... |
| CVE-2014-100001 | — | — | 1.1% | Jan 13, 2015 | Cross-site request forgery (CSRF) vulnerability in the SEO Plugin LiveOptim plugin before 1.1.4-free for WordPress allow... |
| CVE-2014-100000 | — | — | — | Jan 13, 2015 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: This ID is frequently used as an example o... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now