Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2014-8586

EPSS 78.02% · P99
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2014-8586

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
SQL injection vulnerability in the CP Multi View Event Calendar plugin 1.01 for WordPress allows remote attackers to execute arbitrary SQL commands via the calid parameter.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
WordPress CP Multi View Event Calendar插件‘calid’参数SQL注入漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
WordPress是WordPress软件基金会的一套使用PHP语言开发的博客平台,该平台支持在PHP和MySQL的服务器上架设个人博客网站。CP Multi View Event Calendar是其中的一个可视化的日历插件。 WordPress CP Multi View Event Calendar插件1.01版本中存在SQL注入漏洞。远程攻击者可借助‘calid’参数利用该漏洞执行任意SQL命令。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2014-8586

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2014-8586

登录查看更多情报信息。

Same Patch Batch · n/a · 2014-11-04 · 46 CVEs total

CVE-2013-7057Axway SecureTransport 跨站请求伪造漏洞
CVE-2014-8339Nuevolab Nuevoplayer for ClipShare SQL注入漏洞
CVE-2014-8585WordPress Download Manager插件目录遍历漏洞
CVE-2014-8589SAP Network Interface Router 整数溢出漏洞
CVE-2014-8590SAP NetWeaver Application Server Java XML外部实体漏洞
CVE-2014-8591SAP Internet Communication Manager 拒绝服务漏洞
CVE-2014-8592SAP Host Agent 拒绝服务漏洞
CVE-2014-4311Epicor Enterprise 信息泄露漏洞
CVE-2014-8588SAP HANA SQL注入漏洞
CVE-2014-5387EllisLab ExpressionEngine SQL注入漏洞
CVE-2014-7176Enalean Tuleap SQL注入漏洞
CVE-2014-8593Allomani Weblinks 跨站脚本漏洞
CVE-2014-4974ESET Personal Firewall NDIS filter内核模式驱动程序信息泄露漏洞
CVE-2014-3660Libxml2 拒绝服务漏洞
CVE-2014-7875HP LaserJet CM3530 Multifunction Printer CC519A和CC520A 远程拒绝服务漏洞
CVE-2014-6130IBM Notes Traveler For Android 信息泄露漏洞
CVE-2014-8474CA Cloud Service Management 安全漏洞
CVE-2014-8473CA Cloud Service Management 跨站请求伪造漏洞
CVE-2014-8472CA Cloud Service Management 安全漏洞
CVE-2014-8471CA Cloud Service Management 安全漏洞

Showing top 20 of 46 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2014-8586

No comments yet


Leave a comment