CVE-2014-4627: SQL Injection
Published Nov 7, 2014
·Updated
SQL injection vulnerability in EMC RSA Web Threat Detection 4.x before 4.6.1.1 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
Affected Software
1 affected component
RSA Web Threat Detection>=4.0<4.6.1.1
Event History
Nov 7, 2014
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-4627?
CVE-2014-4627 is considered a high severity vulnerability due to the potential for remote authenticated users to execute arbitrary SQL commands.
2
How do I fix CVE-2014-4627?
To fix CVE-2014-4627, update EMC RSA Web Threat Detection to version 4.6.1.1 or later.
3
Who is affected by CVE-2014-4627?
CVE-2014-4627 affects users of EMC RSA Web Threat Detection versions prior to 4.6.1.1.
4
What kind of attacks can be performed using CVE-2014-4627?
CVE-2014-4627 allows attackers to perform SQL injection attacks, potentially leading to unauthorized data access.
5
When was CVE-2014-4627 reported?
CVE-2014-4627 was reported in November 2014.