← Back

CVE-2014-7178

nvd nist
Published: Nov 28, 2014Modified: May 6, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Enalean Tuleap before 7.5.99.6 allows remote attackers to execute arbitrary commands via the User-Agent header, which is provided to the passthru PHP function.

Affected (1)

Products: Enalean: Tuleap
1 product
Tuleap
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 7.5.99.5

References (6)

Timeline

No history available yet.