CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It may be remotely exploitable.
CVE
CVE-2014-2294
Severity
CRITICAL
CVSS
9.8
EPSS
2.81%
Original NVD Description
Open Web Analytics (OWA) before 1.5.7 allows remote attackers to conduct PHP object injection attacks via a crafted serialized object in the owa_event parameter to queue.php.
Related CVEs
Other vulnerabilities affecting the same vendor(s)