7.5
    High

    CVE-2014-1762

    Last Modified: 22 Jul 2014

    Unspecified vulnerability in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code with medium-integrity privileges and bypass a sandbox protection mechanism via unknown vectors, as demonstrated by ZDI during a Pwn4Fun competition at CanSecWest 2014.

    Source:Drozdova Liudmila
    Published:27 Apr 2014
    7.8
    High

    CVE-2014-1761

    Last Modified: 10 Apr 2014

    Microsoft Word 2003 SP3, 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT; Word Viewer; Office Compatibility Pack SP3; Office for Mac 2011; Word Automation Services on SharePoint Server 2010 SP1 and SP2 and 2013; Office Web Apps 2010 SP1 and SP2; and Office Web Apps Server 2013 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted RTF data, as exploited in the wild in March 2014.

    Source:Metasploit
    Published:24 Mar 2014
    2.1
    Low

    CVE-2014-1739

    Last Modified: 6 Sept 2016

    The media_device_enum_entities function in drivers/media/media-device.c in the Linux kernel before 3.14.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory by leveraging /dev/media0 read access for a MEDIA_IOC_ENUM_ENTITIES ioctl call.

    Source:Salva Peiro
    Published:30 Apr 2014
    4.3
    Medium

    CVE-2014-1695

    Last Modified: 27 Apr 2015

    Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) 3.1.x before 3.1.20, 3.2.x before 3.2.15, and 3.3.x before 3.3.5 allows remote attackers to inject arbitrary web script or HTML via a crafted HTML email.

    Source:Adam Ziaja
    Published:28 Feb 2014
    7.5
    High

    CVE-2014-1691

    Last Modified: 22 Mar 2014

    The framework/Util/lib/Horde/Variables.php script in the Util library in Horde before 5.1.1 allows remote attackers to conduct object injection attacks and execute arbitrary PHP code via a crafted serialized object in the _formvars form.

    Source:Metasploit
    Published:1 Apr 2014
    4.3
    Medium

    CVE-2014-1684

    Last Modified: 5 Feb 2014

    The ASF_ReadObject_file_properties function in modules/demux/asf/libasf.c in the ASF Demuxer in VideoLAN VLC Media Player before 2.1.3 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a zero minimum and maximum data packet size in an ASF file.

    Source:Saif
    Published:3 Mar 2014
    6.8
    Medium

    CVE-2014-1683

    Last Modified: 5 Feb 2014

    The bashMail function in cms/data/skins/techjunkie/fragments/contacts/functions.php in SkyBlueCanvas CMS before 1.1 r248-04, when the pid parameter is 4, allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) name, (2) email, (3) subject, or (4) message parameter to index.php.

    Source:Metasploit
    Published:29 Jan 2014
    7.5
    High

    CVE-2014-1677

    Last Modified: 25 Feb 2014

    Technicolor TC7200 with firmware STD6.01.12 could allow remote attackers to obtain sensitive information.

    Source:Jeroen - IT Nerdbox
    Published:3 Apr 2017
    6.5
    Medium

    CVE-2014-1671

    Last Modified: 19 Dec 2015

    Multiple SQL injection vulnerabilities in Dell KACE K1000 5.4.76847 and possibly earlier allow remote attackers or remote authenticated users to execute arbitrary SQL commands via the macAddress element in a (1) getUploadPath or (2) getKBot SOAP request to service/kbot_service.php; the ID parameter to (3) userui/advisory_detail.php or (4) userui/ticket.php; and the (5) ORDER[] parameter to userui/ticket_list.php.

    Source:Rohan Stelling
    Published:26 Jan 2014
    5.4
    Medium

    CVE-2014-1665

    Last Modified: 5 Feb 2014

    Cross-site scripting (XSS) vulnerability in ownCloud before 6.0.1 allows remote authenticated users to inject arbitrary web script or HTML via the filename of an uploaded file.

    Source:absane
    Published:20 Mar 2018
    5
    Medium

    CVE-2014-1664

    Last Modified: 20 Dec 2015

    The Citrix GoToMeeting application 5.0.799.1238 for Android logs HTTP requests containing sensitive information, which allows attackers to obtain user IDs, meeting details, and authentication tokens via an application that reads the system log file.

    Source:Claudio J. Lacayo
    Published:26 Jan 2014
    7.9
    High

    CVE-2014-1649

    Last Modified: 26 May 2014

    The server in Symantec Workspace Streaming (SWS) before 7.5.0.749 allows remote attackers to access files and functionality by sending a crafted XMLRPC request over HTTPS.

    Source:Metasploit
    Published:16 May 2014
    5
    Medium

    CVE-2014-1637

    Last Modified: 12 Dec 2015

    Command School Student Management System 1.06.01 does not properly restrict access to sw/backup/backup_ray2.php, which allows remote attackers to download a database backup via a direct request.

    Source:AtT4CKxT3rR0r1ST
    Published:22 Jan 2014
    7.5
    High

    CVE-2014-1636

    Last Modified: 12 Dec 2015

    Multiple SQL injection vulnerabilities in Command School Student Management System 1.06.01 allow remote attackers to execute arbitrary SQL commands via the id parameter in an edit action to (1) admin_school_names.php, (2) admin_subjects.php, (3) admin_grades.php, (4) admin_terms.php, (5) admin_school_years.php, (6) admin_sgrades.php, (7) admin_media_codes_1.php, (8) admin_infraction_codes.php, (9) admin_generations.php, (10) admin_relations.php, (11) admin_titles.php, or (12) health_allergies.php in sw/.

    Source:AtT4CKxT3rR0r1ST
    Published:22 Jan 2014
    10
    Critical

    CVE-2014-1635

    Last Modified: 10 Oct 2016

    Buffer overflow in login.cgi in MiniHttpd in Belkin N750 Router with firmware before F9K1103_WW_1.10.17m allows remote attackers to execute arbitrary code via a long string in the jump parameter.

    Source:Marco Vaz
    Published:12 Nov 2014
    8.1
    High

    CVE-2014-1632

    Last Modified: 20 Jul 2017

    htdocs/setup/index.php in Eventum before 2.3.5 allows remote attackers to inject and execute arbitrary PHP code via the hostname parameter.

    Source:High-Tech Bridge
    Published:31 Jan 2018
    7.5
    High

    CVE-2014-1631

    Last Modified: 21 Dec 2015

    Eventum before 2.3.5 allows remote attackers to reinstall the application via direct request to /setup/index.php.

    Source:High-Tech Bridge
    Published:31 Jan 2018
    7.5
    High

    CVE-2014-1619

    Last Modified: 7 Jan 2014

    Multiple SQL injection vulnerabilities in Cubic CMS 5.1.1, 5.1.2, and 5.2 allow remote attackers to execute arbitrary SQL commands via the (1) resource_id or (2) version_id parameter to recursos/agent.php or (3) login or (4) pass parameter to login.usuario.

    Source:Eugenio Delfa
    Published:21 Jan 2014
    7.5
    High

    CVE-2014-1618

    Last Modified: 17 Dec 2015

    Multiple SQL injection vulnerabilities in UAEPD Shopping Cart Script allow remote attackers to execute arbitrary SQL commands via the (1) cat_id or (2) p_id parameter to products.php or id parameter to (3) page.php or (4) news.php.

    Source:AtT4CKxT3rR0r1ST
    Published:21 Jan 2014
    6
    Medium

    CVE-2014-1610

    Last Modified: 19 Feb 2014

    MediaWiki 1.22.x before 1.22.2, 1.21.x before 1.21.5, and 1.19.x before 1.19.11, when DjVu or PDF file upload support is enabled, allows remote attackers to execute arbitrary commands via shell metacharacters in (1) the page parameter to includes/media/DjVu.php; (2) the w parameter (aka width field) to thumb.php, which is not properly handled by includes/media/PdfHandler_body.php; and possibly unspecified vectors in (3) includes/media/Bitmap.php and (4) includes/media/ImageHandler.php.

    Source:Metasploit
    Published:30 Jan 2014
    4.3
    Medium

    CVE-2014-1603

    Last Modified: 25 Jan 2018

    Multiple cross-site scripting (XSS) vulnerabilities in GetSimple CMS 3.3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) param parameter to admin/load.php or (2) user, (3) email, or (4) name parameter in a Save Settings action to admin/settings.php.

    Source:Pedro Ribeiro
    Published:14 May 2014
    7.5
    High

    CVE-2014-1597

    Last Modified: 24 Dec 2015

    SQL injection vulnerability in the CMDB web application in synetics i-doit pro before 1.2.5 and i-doit open allows remote attackers to execute arbitrary SQL commands via the objID parameter to the default URI.

    Source:Stephan Rickauer
    Published:27 Feb 2014
    4.3
    Medium

    CVE-2014-1564

    Last Modified: 23 Jan 2016

    Mozilla Firefox before 32.0, Firefox ESR 31.x before 31.1, and Thunderbird 31.x before 31.1 do not properly initialize memory for GIF rendering, which allows remote attackers to obtain sensitive information from process memory via crafted web script that interacts with a CANVAS element associated with a malformed GIF image.

    Source:Michal Zalewski
    Published:3 Sept 2014
    9.8
    Critical

    CVE-2014-1511

    Last Modified: 28 Aug 2014

    Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allow remote attackers to bypass the popup blocker via unspecified vectors.

    Source:Metasploit
    Published:18 Mar 2014
    9.8
    Critical

    CVE-2014-1510

    Last Modified: 28 Aug 2014

    The Web IDL implementation in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to execute arbitrary JavaScript code with chrome privileges by using an IDL fragment to trigger a window.open call.

    Source:Metasploit
    Published:18 Mar 2014
    Low

    CVE-2014-1470

    Last Modified: 27 Dec 2014

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-2388. Reason: This candidate is a reservation duplicate of CVE-2014-2388. Notes: All CVE users should reference CVE-2014-2388 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:TaurusOmar
    Published:18 Aug 2014
    6.5
    Medium

    CVE-2014-1459

    Last Modified: 7 Feb 2014

    SQL injection vulnerability in dg-admin/index.php in doorGets CMS 5.2 and earlier allows remote authenticated administrators to execute arbitrary SQL commands via the _position_down_id parameter. NOTE: this can be leveraged using CSRF to allow remote attackers to execute arbitrary SQL commands.

    Source:High-Tech Bridge SA
    Published:11 Feb 2014
    3.3
    Low

    CVE-2014-1447

    Last Modified: 11 Apr 2025

    Race condition in the virNetServerClientStartKeepAlive function in libvirt before 1.2.1 allows remote attackers to cause a denial of service (libvirtd crash) by closing a connection before a keepalive response is sent.

    Published:31 Dec 2013
    6.5
    Medium

    CVE-2014-1401

    Last Modified: 7 Feb 2014

    Multiple SQL injection vulnerabilities in AuraCMS 2.3 and earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) search parameter to mod/content/content.php or (2) CLIENT_IP, (3) X_FORWARDED_FOR, (4) X_FORWARDED, (5) FORWARDED_FOR, or (6) FORWARDED HTTP header to index.php.

    Source:High-Tech Bridge SA
    Published:11 Feb 2014
    4.9
    Medium

    CVE-2014-1322

    Last Modified: 1 Jan 2016

    The kernel in Apple OS X through 10.9.2 places a kernel pointer into an XNU object data structure accessible from user space, which makes it easier for local users to bypass the ASLR protection mechanism by reading an unspecified attribute of the object.

    Source:Ian Beer
    Published:23 Apr 2014
    10
    Critical

    CVE-2014-1303

    Last Modified: 4 Nov 2022

    Heap-based buffer overflow in Apple Safari 7.0.2 allows remote attackers to execute arbitrary code and bypass a sandbox protection mechanism via unspecified vectors, as demonstrated by Liang Chen during a Pwn2Own competition at CanSecWest 2014.

    Source:TJ Corley
    Published:26 Mar 2014
    7.2
    High

    CVE-2014-1287

    Last Modified: 17 Mar 2014

    USB Host in Apple iOS before 7.1 and Apple TV before 6.1 allows physically proximate attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted USB messages.

    Source:Andy Davis
    Published:14 Mar 2014
    7.4
    High

    CVE-2014-1266

    Last Modified: 11 Apr 2025

    The SSLVerifySignedServerKeyExchange function in libsecurity_ssl/lib/sslKeyExchange.c in the Secure Transport feature in the Data Security component in Apple iOS 6.x before 6.1.6 and 7.x before 7.0.6, Apple TV 6.x before 6.0.2, and Apple OS X 10.9.x before 10.9.2 does not check the signature in a TLS Server Key Exchange message, which allows man-in-the-middle attackers to spoof SSL servers by (1) using an arbitrary private key for the signing step or (2) omitting the signing step.

    Published:22 Feb 2014
    4
    Medium

    CVE-2014-1222

    Last Modified: 31 Mar 2015

    Directory traversal vulnerability in kcfinder/browse.php in Vtiger CRM before 6.0.0 Security patch 1 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the file parameter in a download action. NOTE: it is likely that this issue is actually in the KCFinder third-party component, and it affects additional products besides Vtiger CRM.

    Source:Mahendra
    Published:12 Aug 2014
    5.1
    Medium

    CVE-2014-1219

    Last Modified: 13 Feb 2014

    CA 2E Web Option r8.1.2 accepts a predictable substring of a W2E_SSNID session token in place of the entire token, which allows remote attackers to hijack sessions by changing characters at the end of this substring, as demonstrated by terminating a session via a modified SSNID parameter to web2edoc/close.htm.

    Source:Mike Emery
    Published:13 Feb 2014
    7.5
    High

    CVE-2014-1216

    Last Modified: 9 Jul 2014

    FitNesse Wiki 20131110, 20140201, and earlier allows remote attackers to execute arbitrary commands by defining a COMMAND_PATTERN and TEST_RUNNER in the pageContent parameter when editing a page.

    Source:SecPod Research
    Published:21 Apr 2014
    8.8
    High

    CVE-2014-1214

    Last Modified: 20 Dec 2016

    views/upload.php in the ProJoom Smart Flash Header (NovaSFH) component 3.0.2 and earlier for Joomla! allows remote attackers to upload and execute arbitrary files via a crafted (1) dest parameter and (2) arbitrary extension in the Filename parameter.

    Source:Yuri Kramarz
    Published:13 Nov 2019
    7.5
    High

    CVE-2014-1206

    Last Modified: 18 Feb 2014

    SQL injection vulnerability in the password reset page in Open Web Analytics (OWA) before 1.5.5 allows remote attackers to execute arbitrary SQL commands via the owa_email_address parameter in a base.passwordResetRequest action to index.php.

    Source:Dana James Traversie
    Published:15 Jan 2014
    7.5
    High

    CVE-2014-1204

    Last Modified: 6 Nov 2017

    SQL injection vulnerability in Tableau Server 8.0.x before 8.0.7 and 8.1.x before 8.1.2 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors. NOTE: this can be exploited by unauthenticated remote attackers if the guest user is enabled.

    Source:Trustwave's SpiderLabs
    Published:31 Jan 2014
    9.3
    Critical

    CVE-2014-1202

    Last Modified: 14 Jan 2014

    The WSDL/WADL import functionality in SoapUI before 4.6.4 allows remote attackers to execute arbitrary Java code via a crafted request parameter in a WSDL file.

    Source:Barak Tawily
    Published:15 Jan 2014
    10
    Critical

    CVE-2014-1201

    Last Modified: 25 Jan 2018

    Buffer overflow in the INetViewX ActiveX control in the Lorex Edge LH310 and Edge+ LH320 series with firmware 7-35-28-1B26E, Edge2 LH330 series with firmware 11.17.38-33_1D97A, and Edge3 LH340 series with firmware 11.19.85_1FE3A allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in the HTTP_PORT parameter.

    Source:Pedro Ribeiro
    Published:15 Jan 2014
    Low

    CVE-2014-1155

    Last Modified: 27 Dec 2014

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-9580. Reason: This candidate is not authorized for use because it is part of the 2014 CVE-ID ID-Syntax protection block, which protects against accidental truncation of CVE IDs with sequence numbers containing more than 4 digits. See references. Notes: All CVE users should reference CVE-2014-9580 instead of this candidate

    Source:TaurusOmar
    Published:10 Jan 2015
    Low

    CVE-2014-1137

    Last Modified: 27 Dec 2014

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-9445, CVE-2014-9581, CVE-2014-9582. Reason: This candidate is not authorized for use because it is part of the 2014 CVE-ID ID-Syntax protection block, which protects against accidental truncation of CVE IDs with sequence numbers containing more than 4 digits. See references. Notes: All CVE users should reference CVE-2014-9445, CVE-2014-9581, or CVE-2014-9582 instead of this candidate

    Source:TaurusOmar
    Published:10 Jan 2015
    Low

    CVE-2014-1004

    Last Modified: 10 Oct 2016

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-9456. Reason: This candidate is not authorized for use because it is part of the 2014 CVE-ID ID-Syntax protection block, which protects against accidental truncation of CVE IDs with sequence numbers containing more than 4 digits. See references. Notes: All CVE users should reference CVE-2014-9456 instead of this candidate

    Source:TaurusOmar
    Published:10 Jan 2015
    5
    Medium

    CVE-2014-0999

    Last Modified: 26 May 2015

    Sendio before 7.2.4 includes the session identifier in URLs in emails, which allows remote attackers to obtain sensitive information and hijack sessions by reading the jsessionid parameter in the Referrer HTTP header.

    Source:Core Security
    Published:2 Jun 2015
    7.2
    High

    CVE-2014-0998

    Last Modified: 29 Jan 2015

    Integer signedness error in the vt console driver (formerly Newcons) in FreeBSD 9.3 before p10 and 10.1 before p6 allows local users to cause a denial of service (crash) and possibly gain privileges via a negative value in a VT_WAITACTIVE ioctl call, which triggers an array index error and out-of-bounds kernel memory access.

    Source:Core Security
    Published:2 Feb 2015
    7.5
    High

    CVE-2014-0997

    Last Modified: 26 Jan 2015

    WiFiMonitor in Android 4.4.4 as used in the Nexus 5 and 4, Android 4.2.2 as used in the LG D806, Android 4.2.2 as used in the Samsung SM-T310, Android 4.1.2 as used in the Motorola RAZR HD, and potentially other unspecified Android releases before 5.0.1 and 5.0.2 does not properly handle exceptions, which allows remote attackers to cause a denial of service (reboot) via a crafted 802.11 probe response frame.

    Source:Core Security
    Published:25 Sept 2017
    5
    Medium

    CVE-2014-0995

    Last Modified: 17 Oct 2014

    The Standalone Enqueue Server in SAP Netweaver 7.20, 7.01, and earlier allows remote attackers to cause a denial of service (uncontrolled recursion and crash) via a trace level with a wildcard in the Trace Pattern.

    Source:Core Security
    Published:6 Nov 2014
    6.8
    Medium

    CVE-2014-0993

    Last Modified: 12 Apr 2025

    Buffer overflow in the Vcl.Graphics.TPicture.Bitmap implementation in the Visual Component Library (VCL) in Embarcadero Delphi XE6 20.0.15596.9843 and C++ Builder XE6 20.0.15596.9843 allows remote attackers to execute arbitrary code via a crafted BMP file.

    Published:15 Sept 2014
    4.3
    Medium

    CVE-2014-0984

    Last Modified: 17 Apr 2014

    The passwordCheck function in SAP Router 721 patch 117, 720 patch 411, 710 patch 029, and earlier terminates validation of a Route Permission Table entry password upon encountering the first incorrect character, which allows remote attackers to obtain passwords via a brute-force attack that relies on timing differences in responses to incorrect password guesses, aka a timing side-channel attack.

    Source:Core Security
    Published:17 Apr 2014