CVE-2014-2034

Unspecified vulnerability in Sonatype Nexus OSS and Pro 2.4.0 through 2.7.1 allows attackers to create arbitrary user accounts via unknown vectors related to "an unauthenticated execution path."
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sonatype:nexus:2.4.0:*:*:*:open_source:*:*:*
cpe:2.3:a:sonatype:nexus:2.4.0:*:*:*:professional:*:*:*
cpe:2.3:a:sonatype:nexus:2.5.0:*:*:*:open_source:*:*:*
cpe:2.3:a:sonatype:nexus:2.5.0:*:*:*:professional:*:*:*
cpe:2.3:a:sonatype:nexus:2.6.0:*:*:*:open_source:*:*:*
cpe:2.3:a:sonatype:nexus:2.6.0:*:*:*:professional:*:*:*
cpe:2.3:a:sonatype:nexus:2.6.1:*:*:*:open_source:*:*:*
cpe:2.3:a:sonatype:nexus:2.6.1:*:*:*:professional:*:*:*
cpe:2.3:a:sonatype:nexus:2.6.2:*:*:*:open_source:*:*:*
cpe:2.3:a:sonatype:nexus:2.6.2:*:*:*:professional:*:*:*
cpe:2.3:a:sonatype:nexus:2.6.3:*:*:*:open_source:*:*:*
cpe:2.3:a:sonatype:nexus:2.6.3:*:*:*:professional:*:*:*
cpe:2.3:a:sonatype:nexus:2.6.4:*:*:*:open_source:*:*:*
cpe:2.3:a:sonatype:nexus:2.6.4:*:*:*:professional:*:*:*
cpe:2.3:a:sonatype:nexus:2.6.5:*:*:*:professional:*:*:*
cpe:2.3:a:sonatype:nexus:2.7.0:*:*:*:open_source:*:*:*
cpe:2.3:a:sonatype:nexus:2.7.0:*:*:*:professional:*:*:*
cpe:2.3:a:sonatype:nexus:2.7.1:*:*:*:open_source:*:*:*
cpe:2.3:a:sonatype:nexus:2.7.1:*:*:*:professional:*:*:*

History

No history.

Information

Published : 2014-04-01 03:25

Updated : 2024-02-04 18:35


NVD link : CVE-2014-2034

Mitre link : CVE-2014-2034

CVE.ORG link : CVE-2014-2034


JSON object : View

Products Affected

sonatype

  • nexus