CVE-2014-8149: Input Validation
Published Jun 27, 2017
·Updated
OpenDaylight defense4all 1.1.0 and earlier allows remote authenticated users to write report data to arbitrary files.
Affected Software
1 affected component
Opendaylight defense4all<=1.1.0
Remediation
Patch Available
Patch Available
Event History
Jun 27, 2017
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-8149?
CVE-2014-8149 is classified as a medium severity vulnerability.
2
How do I fix CVE-2014-8149?
To fix CVE-2014-8149, upgrade to a version of OpenDaylight defense4all later than 1.1.0.
3
Who is impacted by CVE-2014-8149?
Remote authenticated users of OpenDaylight defense4all versions 1.1.0 and earlier are impacted by CVE-2014-8149.
4
What type of vulnerability is CVE-2014-8149?
CVE-2014-8149 is a file write vulnerability that allows unauthorized file modifications.
5
What action can remote authenticated users take related to CVE-2014-8149?
Remote authenticated users can write report data to arbitrary files, which may lead to potential data integrity issues.