CVE Vulnerabilities

CVE-2014-2034

Published: Apr 01, 2014 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Unspecified vulnerability in Sonatype Nexus OSS and Pro 2.4.0 through 2.7.1 allows attackers to create arbitrary user accounts via unknown vectors related to an unauthenticated execution path.

Affected Software

NameVendorStart VersionEnd Version
NexusSonatype2.4.0 (including)2.4.0 (including)
NexusSonatype2.5.0 (including)2.5.0 (including)
NexusSonatype2.6.0 (including)2.6.0 (including)
NexusSonatype2.6.1 (including)2.6.1 (including)
NexusSonatype2.6.2 (including)2.6.2 (including)
NexusSonatype2.6.3 (including)2.6.3 (including)
NexusSonatype2.6.4 (including)2.6.4 (including)
NexusSonatype2.6.5 (including)2.6.5 (including)
NexusSonatype2.7.0 (including)2.7.0 (including)
NexusSonatype2.7.1 (including)2.7.1 (including)

References