2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2014-125127HIGH7.5The mikecao/flight PHP framework in versions prior to v1.2 is vulnerable to Denial of Service (DoS) attacks due to eager...
CVE-2014-125125HIGH8.8A path traversal vulnerability exists in A10 Networks AX Loadbalancer versions 2.6.1-GR1-P5, 2.7.0, and earlier. The vul...
CVE-2014-125119HIGH8.4A filename spoofing vulnerability exists in WinRAR when opening specially crafted ZIP archives. The issue arises due to ...
CVE-2014-125114HIGH8.4A stack-based buffer overflow vulnerability exists in i-Ftp version 2.20 due to improper handling of the Time attribute ...
CVE-2014-6274HIGH7.5git-annex had a bug in the S3 and Glacier remotes where if embedcreds=yes was set, and the remote used encryption=pubkey...
CVE-2014-5329HIGH7.5GIGAPOD file servers (Appliance model and Software model) provide two web interfaces, 80/tcp and 443/tcp for user operat...
CVE-2014-125102HIGH7.5A vulnerability classified as problematic was found in Bestwebsoft Relevant Plugin up to 1.0.7 on WordPress. Affected by...
CVE-2014-125093HIGH7.5A vulnerability has been found in Ad Blocking Detector Plugin up to 1.2.1 on WordPress and classified as problematic. Th...
CVE-2014-125072HIGH8.8A vulnerability classified as critical has been found in CherishSin klattr. This affects an unknown part. The manipulati...
CVE-2014-125066HIGH7.5A vulnerability was found in emmflo yuko-bot. It has been declared as problematic. This vulnerability affects unknown co...
CVE-2014-125033HIGH7.5A vulnerability was found in rails-cv-app. It has been rated as problematic. Affected by this issue is some unknown func...
CVE-2014-125028HIGH8.8A vulnerability was found in valtech IDP Test Client and classified as problematic. Affected by this issue is some unkno...
CVE-2014-0144HIGH8.6QEMU before 2.0.0 block drivers for CLOOP, QCOW2 version 2 and various other image formats are vulnerable to potential m...
CVE-2014-3648HIGH7.5The simplepush server iterates through the application installations and pushes a notification to the server provided by...
CVE-2014-125024HIGH7.8A vulnerability was found in FFmpeg 2.0. It has been rated as critical. Affected by this issue is the function lag_decod...
CVE-2014-125020HIGH7.8A vulnerability has been found in FFmpeg 2.0 and classified as critical. This vulnerability affects the function decode_...
CVE-2014-125017HIGH7.8A vulnerability classified as critical was found in FFmpeg 2.0. This vulnerability affects the function rpza_decode_stre...
CVE-2014-125015HIGH7.8A vulnerability classified as critical has been found in FFmpeg 2.0. Affected is the function read_var_block_data. The m...
CVE-2014-125011HIGH7.8A vulnerability was found in FFmpeg 2.0. It has been declared as problematic. Affected by this vulnerability is the func...
CVE-2014-125001HIGH8.8A vulnerability classified as critical has been found in Cardo Systems Scala Rider Q3. Affected is the file /cardo/api o...
CVE-2014-9702HIGH7.5system/classes/DbPDO.php in Cmfive through 2015-03-15, when database connectivity malfunctions, allows remote attackers ...
CVE-2014-8943HIGH8.8Lexiglot through 2014-11-20 allows SSRF via the admin.php?page=projects svn_url parameter.
CVE-2014-8942HIGH8.8Lexiglot through 2014-11-20 allows CSRF.
CVE-2014-8938HIGH7.8Lexiglot through 2014-11-20 allows local users to obtain sensitive information by listing a process because the username...
CVE-2014-8937HIGH7.5Lexiglot through 2014-11-20 allows denial of service because api/update.php launches svn update operations that use a gr...

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now