VYPR
Medium severity5.9NVD Advisory· Published Jan 2, 2020· Updated Jun 17, 2026

CVE-2014-6275

CVE-2014-6275

Description

FusionForge before 5.3.2 use scripts that run under the shared Apache user, which is also used by project homepages by default. If project webpages are hosted on the same server than FusionForge, it can allow users to incorrectly access on-disk private data in FusionForge.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Red Hat/FusionForgev5
    Range: before 5.3.2
  • Fusionforge/Fusionforgellm-fuzzy2 versions
    <5.3.2+ 1 more
    • (no CPE)range: <5.3.2
    • cpe:2.3:a:fusionforge:fusionforge:*:*:*:*:*:*:*:*range: <5.3.2
  • cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.