Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2014-4172

33
FAUCET Score

CVE-2014-4172 is a critical URL parameter injection vulnerability affecting Jasig Java CAS Client before 3.3.2, .NET CAS Client before 1.0.2, and phpCAS before 1.3.3. This flaw allows remote attackers to inject arbitrary web script or HTML into the back-channel ticket validation step of the CAS protocol via the 'service' or 'pgtUrl' parameters. With a CVSS score of 9.8, the vulnerability is easily exploitable over the network with low complexity, potentially leading to complete compromise of confidentiality, integrity, and availability. Despite its high severity, there is no evidence of active exploitation, no public exploit code (Metasploit, Nuclei, ExploitDB), and minimal community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
< 1.0.2CPE matchmatch criteria
cpe:2.3:a:apereo:.net_cas_client:*:*:*:*:*:*:*:*
< 3.3.2CPE matchmatch criteria
cpe:2.3:a:apereo:java_cas_client:*:*:*:*:*:*:*:*
< 1.3.3CPE matchmatch criteria
cpe:2.3:a:apereo:phpcas:*:*:*:*:*:*:*:*
7.0CPE matchmatch criteria
cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
20CPE matchmatch criteria
cpe:2.3:o:fedoraproject:fedora:20:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

9.8CRITICAL

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
3.9
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
6.06%
Probability of exploitation in next 30 days
EPSS Percentile
92.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-24
Model: v2026.06.15
This CVE's current EPSS score of 0.0606 is in the 87th percentile among its peer group of 36,829 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (7)

composerpatch availablevia ghsa
Product: jasig/phpcasFixed in: 1.3.3
github_advisorypatch availablevia nvd_reference
View patch
mavenpatch availablevia ghsa
Product: org.jasig.cas:cas-clientFixed in: 3.3.2
nugetpatch availablevia ghsa
Product: DotNetCasClientFixed in: 1.0.2
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Portal 6.2Fixed in: cas-client
View patch
redhatno patchvia redhat_api
Product: Red Hat JBoss Portal 5Fixed in: cas-client
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Virtualization 3Fixed in: jasperreports-server-pro

Vendor Advisories (2)

nugetGHSA-9fc5-q25c-r2wrcritical

Jasig Java CAS Client, .NET CAS Client, and phpCAS contain URL parameter injection vulnerability

May 17, 2022
redhatCVE-2014-4172Important

cas-client: Bypass of security constraints via URL parameter injection

Aug 11, 2014

References

lists.fedoraproject.org / pipermail/package-announce/2014-August/137182.html
Third Party Advisory
bugs.debian.org / cgi-bin/bugreport.cgi
Third Party Advisory
bugzilla.redhat.com / show_bug.cgi
Issue TrackingThird Party Advisory
exchange.xforce.ibmcloud.com / vulnerabilities/95673
Third Party AdvisoryVDB Entry
github.com / Jasig/dotnet-cas-client/commit/f0e030014fb7a39e5f38469f43199dc590fd0e8d
PatchThird Party Advisory
github.com / Jasig/java-cas-client/commit/ae37092100c8eaec610dab6d83e5e05a8ee58814
PatchThird Party Advisory
github.com / Jasig/phpCAS/blob/master/docs/ChangeLog
Release NotesThird Party Advisory
github.com / Jasig/phpCAS/pull/125
Third Party Advisory
issues.jasig.org / browse/CASC-228
Third Party Advisory
debian.org / security/2014/dsa-3017.en.html
Third Party Advisory
mail-archive.com / cas-user%40lists.jasig.org/msg17338.html