CVE-2014-0043
Last modified
CVE-2014-0043 is a vulnerability of currently unknown severity. In Apache Wicket 1.5.10 or 6.13.0, by issuing requests to special urls handled by Wicket, it is possible to check for the existence of particular classes in the classpath and thus check whether a third party library with a known security vulnerability is in use.. EPSS estimates a 3.01% chance of exploitation in the next 30 days.
Description
In Apache Wicket 1.5.10 or 6.13.0, by issuing requests to special urls handled by Wicket, it is possible to check for the existence of particular classes in the classpath and thus check whether a third party library with a known security vulnerability is in use.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Apache | Wicket | 1.5.10 |
| Apache | Wicket | 6.13.0 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2014-0043?
How severe is CVE-2014-0043?
How do I fix CVE-2014-0043?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2014
- CVE-2014-0037The ValidateUserLogon function in provider/libserver/ECSessi…
- CVE-2014-0038The compat_sys_recvmmsg function in net/compat.c in the Linu…
- CVE-2014-0039Untrusted search path vulnerability in fwsnort before 1.6.4,…
- CVE-2014-0040OpenStack Heat Templates (heat-templates), as used in Red Ha…
- CVE-2014-0041OpenStack Heat Templates (heat-templates), as used in Red Ha…
- CVE-2014-0042OpenStack Heat Templates (heat-templates), as used in Red Ha…
- CVE-2014-0044The opus_packet_get_samples_per_frame function in client in …
- CVE-2014-0045The needSamples method in AudioOutputSpeech.cpp in the clien…
- CVE-2014-0046Cross-site scripting (XSS) vulnerability in the link-to help…
- CVE-2014-0047Docker before 1.5 allows local users to have unspecified imp…
- CVE-2014-0048An issue was found in Docker before 1.6.0. Some programs and…9.8
- CVE-2014-0049Buffer overflow in the complete_emulated_mmio function in ar…
Are you affected by CVE-2014-0043?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
