CVE-2014-2034

EUVD-2014-2086
Unspecified vulnerability in Sonatype Nexus OSS and Pro 2.4.0 through 2.7.1 allows attackers to create arbitrary user accounts via unknown vectors related to "an unauthenticated execution path."
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 76%
Affected Products (NVD)
VendorProductVersion
sonatypenexus
2.4.0
sonatypenexus
2.4.0
sonatypenexus
2.5.0
sonatypenexus
2.5.0
sonatypenexus
2.6.0
sonatypenexus
2.6.0
sonatypenexus
2.6.1
sonatypenexus
2.6.1
sonatypenexus
2.6.2
sonatypenexus
2.6.2
sonatypenexus
2.6.3
sonatypenexus
2.6.3
sonatypenexus
2.6.4
sonatypenexus
2.6.4
sonatypenexus
2.6.5
sonatypenexus
2.7.0
sonatypenexus
2.7.0
sonatypenexus
2.7.1
sonatypenexus
2.7.1
𝑥
= Vulnerable software versions