CVE-2014-7176
Enalean Tuleap <7.5.99.4 - SQL Injection
Title source: llmDescription
SQL injection vulnerability in Enalean Tuleap before 7.5.99.4 allows remote authenticated users to execute arbitrary SQL commands via the lobal_txt parameter to plugins/docman.
Exploits (2)
References (7)
Scores
EPSS
0.1378
EPSS Percentile
94.3%
Details
CWE
CWE-89
Status
published
Products (1)
enalean/tuleap
< 7.5
Published
Nov 04, 2014
Tracked Since
Feb 18, 2026