Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2014-4311

EPSS 8.73% · P93
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2014-4311

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Epicor Enterprise 7.4 before FS74SP6_HotfixTL054181 allows attackers to obtain the (1) Database Connection and (2) E-mail Connection passwords by reading HTML source code of the database connection and email settings page.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Epicor Enterprise 信息泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Epicor是美国恩柏科软件(Epicor Software)公司的一套企业资源规划(ERP)软件。该软件为客户关系管理(CRM)、制造运营、供应链管理(SCM)、人力资本管理(HCM)等方面提供解决方案。Epicor Enterprise是一个企业版。 Epicor Enterprise FS74SP6_HotfixTL054181之前7.4版本中存在安全漏洞。攻击者可通过读取数据库连接和邮件设置页面的HTML源代码利用该漏洞获取Database Connection和E-mail Connection
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2014-4311

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2014-4311

登录查看更多情报信息。

Same Patch Batch · n/a · 2014-11-04 · 46 CVEs total

CVE-2013-7057Axway SecureTransport 跨站请求伪造漏洞
CVE-2014-8339Nuevolab Nuevoplayer for ClipShare SQL注入漏洞
CVE-2014-8585WordPress Download Manager插件目录遍历漏洞
CVE-2014-8588SAP HANA SQL注入漏洞
CVE-2014-8589SAP Network Interface Router 整数溢出漏洞
CVE-2014-8590SAP NetWeaver Application Server Java XML外部实体漏洞
CVE-2014-8591SAP Internet Communication Manager 拒绝服务漏洞
CVE-2014-8592SAP Host Agent 拒绝服务漏洞
CVE-2014-8587多款SAP产品安全漏洞
CVE-2014-5387EllisLab ExpressionEngine SQL注入漏洞
CVE-2014-7176Enalean Tuleap SQL注入漏洞
CVE-2014-8593Allomani Weblinks 跨站脚本漏洞
CVE-2014-4974ESET Personal Firewall NDIS filter内核模式驱动程序信息泄露漏洞
CVE-2014-3660Libxml2 拒绝服务漏洞
CVE-2014-7875HP LaserJet CM3530 Multifunction Printer CC519A和CC520A 远程拒绝服务漏洞
CVE-2014-6130IBM Notes Traveler For Android 信息泄露漏洞
CVE-2014-8474CA Cloud Service Management 安全漏洞
CVE-2014-8473CA Cloud Service Management 跨站请求伪造漏洞
CVE-2014-8472CA Cloud Service Management 安全漏洞
CVE-2014-8471CA Cloud Service Management 安全漏洞

Showing top 20 of 46 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2014-4311

No comments yet


Leave a comment