CVE-2014-3931
CRITICAL KEVMulti-Router Looking Glass < 5.4.1 - Arbitrary Memory Write and Memory Corruption
Title source: llmExploitation Summary
CVE-2014-3931 is actively exploited and listed in the CISA Known Exploited Vulnerabilities (KEV) catalog, added July 7, 2025.
Description
fastping.c in MRLG (aka Multi-Router Looking Glass) before 5.5.0 allows remote attackers to cause an arbitrary memory write and memory corruption.
References (4)
Core 4
Core References
Third Party Advisory x_refsource_confirm
http://mrlg.op-sec.us/
Third Party Advisory x_refsource_misc
http://www.s3.eurecom.fr/cve/CVE-2014-3931.txt
Exploit, Third Party Advisory x_refsource_misc
https://hackerone.com/reports/16330
Third Party Advisory, US Government Resource
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2014-3931
Scores
CVSS v3
9.8
EPSS
0.4998
EPSS Percentile
97.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
active
Automatable
yes
Technical Impact
total
Details
CISA KEV
2025-07-07
VulnCheck KEV
2025-07-07
ENISA EUVD
EUVD-2014-3868
CWE
CWE-119
Status
published
Products (1)
multi-router_looking_glass_project/multi-router_looking_glass
< 5.4.1
Published
Mar 31, 2017
KEV Added
Jul 07, 2025
Tracked Since
Feb 18, 2026