Tableau · Tableau Server · CVE-2014-1204
**Name of the Vulnerable Software and Affected Versions**
Tableau Server versions 8.0.x through 8.0.6
Tableau Server versions 8.1.x through 8.1.1
**Description**
A SQL injection issue allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors. If the guest user is enabled, this can also be exploited by unauthenticated remote attackers.
**Recommendations**
For Tableau Server versions 8.0.x through 8.0.6, update to version 8.0.7 or later.
For Tableau Server versions 8.1.x through 8.1.1, update to version 8.1.2 or later.