Unrated severityNVD Advisory· Published Jan 31, 2014· Updated Apr 29, 2026
CVE-2014-1204
CVE-2014-1204
Description
SQL injection vulnerability in Tableau Server 8.0.x before 8.0.7 and 8.1.x before 8.1.2 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors. NOTE: this can be exploited by unauthenticated remote attackers if the guest user is enabled.
Affected products
9cpe:2.3:a:tableausoftware:tableau_server:8.0:*:*:*:*:*:*:*+ 8 more
- cpe:2.3:a:tableausoftware:tableau_server:8.0:*:*:*:*:*:*:*
- cpe:2.3:a:tableausoftware:tableau_server:8.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:tableausoftware:tableau_server:8.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:tableausoftware:tableau_server:8.0.3:*:*:*:*:*:*:*
- cpe:2.3:a:tableausoftware:tableau_server:8.0.4:*:*:*:*:*:*:*
- cpe:2.3:a:tableausoftware:tableau_server:8.0.5:*:*:*:*:*:*:*
- cpe:2.3:a:tableausoftware:tableau_server:8.0.6:*:*:*:*:*:*:*
- cpe:2.3:a:tableausoftware:tableau_server:8.1:*:*:*:*:*:*:*
- cpe:2.3:a:tableausoftware:tableau_server:8.1.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- secunia.com/advisories/56620nvdVendor Advisory
- www.tableausoftware.com/support/releases/812nvdVendor Advisory
- osvdb.org/102568nvd
- www.exploit-db.com/exploits/31578nvd
- www.securityfocus.com/bid/65171nvd
- www.securitytracker.com/id/1029706nvd
- www.tableausoftware.com/support/releases/8.0.7nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/90730nvd
- www.trustwave.com/spiderlabs/advisories/TWSL2014-003.txtnvd
News mentions
0No linked articles in our index yet.