References https://nvd.nist.gov/vuln/detail/CVE-2014-1841 https://www.exploit-db.com/exploits/31579 https://www.cve.org/CVERecord?id=CVE-2014-1841 https://cve.imfht.com/poc_detail/4ce0428ef55f48882afe3059447e8403cb56cb2c https://cve.imfht.com/detail/CVE-2014-1841 https://avd.aliyun.com/detail?id=AVD-2014-1843
Related VulnerabilitiesCuteHttpFileServer/chfs存在未授权任意文件上传PoCCVE-2026-18072: Advanced Responsive Video Embedder 10.8.7/10.8.8 - Hardcoded Backdoor Authentication BypassPoCCVE-2026-5524: Divi Form Builder <=5.1.8 - Unauthenticated Arbitrary File Upload RCEPoCCVE-2026-56292: AcyMailing < 10.11.1 - Unauthenticated SQL InjectionPoCCVE-2026-58191: Appium base-driver <=10.6.0 - Reflected Cross-Site ScriptingPoCCVE-2026-59177: ESPHome Device Builder <1.0.10 - Unauthenticated Dashboard AccessPoCCVE-2026-60105: Monsta FTP <= 2.14.4 - Unauthenticated SSRF via IPv6 Blocklist Bypass北京亿赛通科技发展有限责任公司电子文档安全管理系统CDGServer3-client存在前台sql漏洞PoCCVE-2026-41042: Apache Gravitino < 1.2.1 - Unauthenticated Remote Code ExecutionPoCCVE-2026-42596: Gotenberg < 8.31.0 - Server-Side Request ForgeryPoCCVE-2026-18577: N-able N-central < 2026.3.1.10 - Authentication BypassPoCCVE-2026-45695: Kopia Server 0.23.0 - Remote Code ExecutionPoCCVE-2017-7504: JBossMQ HTTP Invocation Layer (HTTPServerILServlet) - Unauthenticated Java Deserialization