2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2014-125112CRITICAL9.8Plack::Middleware::Session::Cookie versions through 0.21 for Perl allows remote code execution. Plack::Middleware::Sess...
CVE-2014-125113CRITICAL9.3An unrestricted file upload vulnerability exists in Dell (acquired by Quest) KACE K1000 System Management Appliance vers...
CVE-2014-125126CRITICAL9.2An unrestricted file upload vulnerability exists in Simple E-Document versions 3.0 to 3.1 that allows an unauthenticated...
CVE-2014-125124CRITICAL10An unauthenticated remote command execution vulnerability exists in Pandora FMS versions up to and including 5.0RC1 via ...
CVE-2014-125123CRITICAL10An unauthenticated SQL injection vulnerability exists in the Kloxo web hosting control panel (developed by LXCenter) pri...
CVE-2014-125121CRITICAL10Array Networks vAPV (version 8.3.2.17) and vxAG (version 9.2.0.34) appliances are affected by a privilege escalation vul...
CVE-2014-125118CRITICAL9.4A command injection vulnerability exists in the eScan Web Management Console version 5.5-2. The application fails to pro...
CVE-2014-125117CRITICAL9.3A stack-based buffer overflow vulnerability in the my_cgi.cgi component of certain D-Link devices, including the DSP-W21...
CVE-2014-125116CRITICAL9.3A remote code execution vulnerability exists in HybridAuth versions 2.0.9 through 2.2.2 due to insecure use of the insta...
CVE-2014-125115CRITICAL10An unauthenticated SQL injection vulnerability exists in Pandora FMS version 5.0 SP2 and earlier. The mobile/index.php e...
CVE-2014-7210CRITICAL9.8pdns specific as packaged in Debian in version before 3.3.1-1 creates a too privileged MySQL user. It was discovered tha...
CVE-2014-0468CRITICAL9.8Vulnerability in fusionforge in the shipped Apache configuration, where the web server may execute scripts that the use...
CVE-2014-5470CRITICAL9.8Actual Analyzer through 2014-08-29 allows code execution via shell metacharacters because untrusted input is used for pa...
CVE-2014-125106CRITICAL9.8Nanopb before 0.3.1 allows size_t overflows in pb_dec_bytes and pb_dec_string.
CVE-2014-125104CRITICAL9.8A vulnerability was found in VaultPress Plugin up to 1.6.0 on WordPress. It has been declared as critical. Affected by t...
CVE-2014-125101CRITICAL9.8A vulnerability classified as critical has been found in Portfolio Gallery Plugin up to 1.1.8 on WordPress. This affects...
CVE-2014-125099CRITICAL9.8A vulnerability has been found in I Recommend This Plugin up to 3.7.2 on WordPress and classified as critical. Affected ...
CVE-2014-125091CRITICAL9.8A vulnerability has been found in codepeople cp-polls Plugin 1.0.1 on WordPress and classified as critical. This vulnera...
CVE-2014-125087CRITICAL9.8A vulnerability was found in java-xmlbuilder up to 1.1. It has been rated as problematic. Affected by this issue is some...
CVE-2014-125086CRITICAL9.8A vulnerability has been found in Gimmie Plugin 1.2.2 on vBulletin and classified as critical. Affected by this vulnerab...
CVE-2014-125085CRITICAL9.8A vulnerability, which was classified as critical, was found in Gimmie Plugin 1.2.2 on vBulletin. Affected is an unknown...
CVE-2014-125084CRITICAL9.8A vulnerability, which was classified as critical, has been found in Gimmie Plugin 1.2.2 on vBulletin. This issue affect...
CVE-2014-125083CRITICAL9.8A vulnerability has been found in Anant Labs google-enterprise-connector-dctm up to 3.2.3 and classified as critical. Af...
CVE-2014-125082CRITICAL9.8A vulnerability was found in nivit redports. It has been declared as critical. This vulnerability affects unknown code o...
CVE-2014-125081CRITICAL9.8A vulnerability, which was classified as critical, has been found in risheesh debutsav. This issue affects some unknown ...

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now