CVE-2014-2871
PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 relies on an HTTP session for entering credentials on login pages, which allows remote attackers to obtain sensitive information by sniffing the network.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0034 (0.3%)
Percentile: 56.5%
EPSS: 2026-05-06
Affects
paperthin:commonspot_content_serverTechnical description
PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 relies on an HTTP session for entering credentials on login pages, which allows remote attackers to obtain sensitive information by sniffing the network.
Published: 4/15/2014, 11:13:17 PM
Last modified: 5/6/2026, 10:30:45 PM