CVE Vulnerabilities

CVE-2014-2034

Published: Apr 01, 2014 | Modified: Apr 01, 2014
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Unspecified vulnerability in Sonatype Nexus OSS and Pro 2.4.0 through 2.7.1 allows attackers to create arbitrary user accounts via unknown vectors related to an unauthenticated execution path.

Affected Software

Name Vendor Start Version End Version
Nexus Sonatype 2.4.0 (including) 2.4.0 (including)
Nexus Sonatype 2.5.0 (including) 2.5.0 (including)
Nexus Sonatype 2.6.0 (including) 2.6.0 (including)
Nexus Sonatype 2.6.1 (including) 2.6.1 (including)
Nexus Sonatype 2.6.2 (including) 2.6.2 (including)
Nexus Sonatype 2.6.3 (including) 2.6.3 (including)
Nexus Sonatype 2.6.4 (including) 2.6.4 (including)
Nexus Sonatype 2.6.5 (including) 2.6.5 (including)
Nexus Sonatype 2.7.0 (including) 2.7.0 (including)
Nexus Sonatype 2.7.1 (including) 2.7.1 (including)

References