CyberRota
Live Feed
Return to register
Case File

CVE-2014-0002

HIGH · CVSS 7.5 EPSS 32.54%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2014-03-21 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2014-0002
Severity
HIGH
CVSS
7.5
EPSS
32.54%
Apache

Original Filing — NVD Description

The XSLT component in Apache Camel before 2.11.4 and 2.12.x before 2.12.3 allows remote attackers to read arbitrary files and possibly have other unspecified impact via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.