CVE-2014-8295: Bacula Bacula-Web

High severity, CVSS 7.5. EPSS: 2.3% chance of exploitation in the next 30 days.

SQL injection vulnerability in joblogs.php in Bacula-Web 5.2.10 allows remote attackers to execute arbitrary SQL commands via the jobid parameter.

Affected products

  • Bacula Bacula-Web: version 5.2.10 only

Published 2014-10-15. Last modified 2026-06-17.