AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2014-3712

MEDIUM · CVSS 5 EPSS 1.66%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2014-11-03 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2014-3712
Severity
MEDIUM
CVSS
5
EPSS
1.66%

Original NVD Description

Katello allows remote attackers to cause a denial of service (memory consumption) via the (1) mode parameter in the setup_utils function in content_search_controller.rb or (2) action parameter in the respond function in api/api_controller.rb in app/controllers/katello/, which is passed to the to_sym method.