{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-08-05T20:16:19.239","vulnerabilities":[{"cve":{"id":"CVE-2014-0468","sourceIdentifier":"security@debian.org","published":"2025-06-26T21:15:27.527","lastModified":"2026-06-17T00:03:05.887","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"Vulnerability in fusionforge in the shipped Apache configuration, where the web server may execute scripts that \nthe users would have uploaded in their raw SCM repositories (SVN, Git, \nBzr...). This issue affects fusionforge: before 5.3+20140506."},{"lang":"es","value":"Vulnerabilidad en fusionforge en la configuración de Apache de fábrica, donde el servidor web podría ejecutar scripts que los usuarios habrían subido a sus repositorios SCM sin procesar (SVN, Git, Bzr, etc.). Este problema afecta a fusionforge: versiones anteriores a 5.3+20140506."}],"affected":[{"source":"security@debian.org","affectedData":[{"vendor":"fusionforge","product":"fusionforge","defaultStatus":"unaffected","versions":[{"version":"0","lessThan":"5.3+20140506","versionType":"custom","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2025-06-27T14:34:41.152990Z","id":"CVE-2014-0468","options":[{"exploitation":"none"},{"automatable":"yes"},{"technicalImpact":"total"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","type":"Secondary","description":[{"lang":"en","value":"CWE-434"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:fusionforge:fusionforge:*:*:*:*:*:*:*:*","versionEndExcluding":"5.3\\+20140506.","matchCriteriaId":"9381B16D-C319-4E04-A4F5-F76F10D24E0F"}]}]}],"references":[{"url":"http://lists.fusionforge.org/pipermail/fusionforge-general/2014-March/002645.html","source":"security@debian.org","tags":["Broken Link"]},{"url":"https://web.archive.org/web/20151019035734/http://lists.fusionforge.org/pipermail/fusionforge-general/2014-March/002645.html","source":"security@debian.org","tags":["Mailing List","Vendor Advisory"]}]}}]}