CVE-2014-1204: Tableausoftware Tableau Server
High severity, CVSS 7.5. EPSS: 4.2% chance of exploitation in the next 30 days.
SQL injection vulnerability in Tableau Server 8.0.x before 8.0.7 and 8.1.x before 8.1.2 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors. NOTE: this can be exploited by unauthenticated remote attackers if the guest user is enabled.
Affected products
- Tableausoftware Tableau Server: version 8.0 only; version 8.0.1 only; version 8.0.2 only; version 8.0.3 only; version 8.0.4 only; version 8.0.5 only; …
Published 2014-01-31. Last modified 2026-06-17.