VYPR
Unrated severityNVD Advisory· Published Oct 20, 2014· Updated May 6, 2026

CVE-2014-2081

CVE-2014-2081

Description

Multiple SQL injection vulnerabilities in the login in web_reports/cgi-bin/InfoStation.cgi in Innovative vtls-Virtua before 2013.2.4 and 2014.x before 2014.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter.

Affected products

2
  • Iii/Vtls Virtua2 versions
    cpe:2.3:a:iii:vtls-virtua:2013.2.3:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:iii:vtls-virtua:2013.2.3:*:*:*:*:*:*:*
    • cpe:2.3:a:iii:vtls-virtua:2014.1.0:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.