CVE-2014-2866: Paperthin Commonspot Content Server

High severity, CVSS 10.0. EPSS: 3.5% chance of exploitation in the next 30 days.

PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 relies on client JavaScript code for access restrictions, which allows remote attackers to perform unspecified operations by modifying this code.

Affected products

  • Paperthin Commonspot Content Server: up to and including 7.0.1; version 8.0.0 only; version 8.0.1 only; version 8.0.2 only

Published 2014-04-15. Last modified 2026-06-17.