CVE-2014-2609 describes an authentication bypass vulnerability in the Java Glassfish Admin Console within HP Executive Scorecard versions 9.40 and 9.41. This critical flaw, with a CVSS score of 10.0, allows remote attackers to execute arbitrary code over TCP port 10001 due to the lack of required authentication. Despite its maximum severity and potential for complete compromise (C:C/I:C/A:C), there is no evidence of active exploitation, publicly available exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
9.40CPE matchmatch criteria | cpe:2.3:a:hp:executive_scorecard:9.40:*:*:*:*:*:*:* | ||
9.41CPE matchmatch criteria | cpe:2.3:a:hp:executive_scorecard:9.41:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.