2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-4469 | — | — | 2.7% | Dec 10, 2014 | WebKit, as used in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1, allows remote attackers to execute... |
| CVE-2014-4468 | — | — | 2.7% | Dec 10, 2014 | WebKit, as used in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1, allows remote attackers to execute... |
| CVE-2014-4466 | — | — | 3.1% | Dec 10, 2014 | WebKit, as used in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1, allows remote attackers to execute... |
| CVE-2014-4465 | — | — | 2.2% | Dec 10, 2014 | WebKit in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1 allows remote attackers to bypass the Same O... |
| CVE-2014-2608 | — | — | 0.4% | Dec 10, 2014 | Unspecified vulnerability in HP Smart Update Manager 6.x before 6.4.1 on Windows, and 6.2.x through 6.4.x before 6.4.1 o... |
| CVE-2014-0587 | — | — | 4.5% | Dec 10, 2014 | Adobe Flash Player before 13.0.0.259 and 14.x through 16.x before 16.0.0.235 on Windows and OS X and before 11.2.202.425... |
| CVE-2014-0580 | — | — | 5.9% | Dec 10, 2014 | Adobe Flash Player before 13.0.0.259 and 14.x through 16.x before 16.0.0.235 on Windows and OS X and before 11.2.202.425... |
| CVE-2014-9364 | — | — | 0.9% | Dec 10, 2014 | Cross-site scripting (XSS) vulnerability in the Unified Login form in the LoginToboggan module 7.x-1.x before 7.x-1.4 fo... |
| CVE-2014-9363 | — | — | 1.3% | Dec 10, 2014 | Open redirect vulnerability in the path-based meta tag editing form in the Meta tags quick module 7.x-2.x before 7.x-2.8... |
| CVE-2014-9362 | — | — | 0.8% | Dec 10, 2014 | Cross-site scripting (XSS) vulnerability in the path-based meta tag editing form in the Meta tags quick module 7.x-2.x b... |
| CVE-2014-9361 | — | — | 1.1% | Dec 10, 2014 | The LoginToboggan module 7.x-1.x before 7.x-1.4 for Drupal does not properly unset the authorized user role for certain ... |
| CVE-2014-7866 | — | — | 79.8% | Dec 10, 2014 | Multiple directory traversal vulnerabilities in ZOHO ManageEngine OpManager 8 (build 88xx) through 11.4, IT360 10.3 and ... |
| CVE-2014-9360 | — | — | 1.4% | Dec 10, 2014 | XML external entity (XXE) vulnerability in Scalix Web Access 11.4.6.12377 and 12.2.0.14697 allows remote attackers to re... |
| CVE-2014-9120 | — | — | 1.0% | Dec 10, 2014 | Cross-site scripting (XSS) vulnerability in Subrion CMS before 3.2.3 allows remote attackers to inject arbitrary web scr... |
| CVE-2014-9091 | — | — | 0.5% | Dec 10, 2014 | Icecast before 2.4.0 does not change the supplementary group privileges when <changeowner> is configured, which allows l... |
| CVE-2014-8601 | — | — | 73.5% | Dec 10, 2014 | PowerDNS Recursor before 3.6.2 does not limit delegation chaining, which allows remote attackers to cause a denial of se... |
| CVE-2014-8298 | — | — | 3.0% | Dec 10, 2014 | The NVIDIA Linux Discrete GPU drivers before R304.125, R331.x before R331.113, R340.x before R340.65, R343.x before R343... |
| CVE-2014-8103 | — | — | 3.4% | Dec 10, 2014 | X.Org Server (aka xserver and xorg-server) 1.15.0 through 1.16.x before 1.16.3 allows remote authenticated users to caus... |
| CVE-2014-8102 | — | — | 4.4% | Dec 10, 2014 | The SProcXFixesSelectSelectionInput function in the XFixes extension in X.Org X Window System (aka X11 or X) X11R6.8.0 a... |
| CVE-2014-8101 | — | — | 4.4% | Dec 10, 2014 | The RandR extension in XFree86 4.2.0, X.Org X Window System (aka X11 or X) X11R6.7, and X.Org Server (aka xserver and xo... |
| CVE-2014-8100 | — | — | 4.4% | Dec 10, 2014 | The Render extension in XFree86 4.0.1, X.Org X Window System (aka X11 or X) X11R6.7, and X.Org Server (aka xserver and x... |
| CVE-2014-8099 | — | — | 4.3% | Dec 10, 2014 | The XVideo extension in XFree86 4.0.0, X.Org X Window System (aka X11 or X) X11R6.7, and X.Org Server (aka xserver and x... |
| CVE-2014-8098 | — | — | 5.2% | Dec 10, 2014 | The GLX extension in XFree86 4.0, X.Org X Window System (aka X11 or X) X11R6.7, and X.Org Server (aka xserver and xorg-s... |
| CVE-2014-8097 | — | — | 4.4% | Dec 10, 2014 | The DBE extension in X.Org X Window System (aka X11 or X) X11R6.1 and X.Org Server (aka xserver and xorg-server) before ... |
| CVE-2014-8096 | — | — | 4.6% | Dec 10, 2014 | The SProcXCMiscGetXIDList function in the XC-MISC extension in X.Org X Window System (aka X11 or X) X11R6.0 and X.Org Se... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now