CVE-2014-3225

medium
Published 2014-05-14 · Modified 2024-04-10
CVSS v3
CVSS v2
4.0
VIR risk
4.0

Description

Cobbler Path Traversal vulnerability

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No vendor mitigations ingested yet for this CVE. The mitigation-content worker queues fetches as references arrive — check back in a few minutes, or see the references list below.

Package impact

EcosystemPackageVulnerableFixed
python PyPIcobbler>=2.6.0,<2.6.42.6.4
python PyPIcobbler>=2.4.0,<2.4.72.4.7

Application impact

VendorProductVersionsFixed
cobblerdcobbler2.4.0
cobblerdcobbler2.4.1
cobblerdcobbler2.4.2
cobblerdcobbler2.4.3
cobblerdcobbler2.4.4
cobblerdcobbler2.6.0

References

CWEs

CWE-22

Verify integrity in audit chain (admin only). AS-IS.