6.4
CVE-2012-2455
- EPSS 1.41%
- Veröffentlicht 10.11.2012 00:55:03
- Zuletzt bearbeitet 16.06.2026 23:41:35
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Advanced Productivity Software DTE Axiom before 12.3.3 does not validate the registration ID, which allows remote attackers to bypass authentication and read or modify data about users, customers, and projects via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Advance Productivity Software ≫ Dte Axiom Version <= 12.3.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.41% | 0.692 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.4 | 10 | 4.9 |
AV:N/AC:L/Au:N/C:P/I:P/A:N
|
http://seclists.org/fulldisclosure/2012/Sep/62
http://secunia.com/advisories/50508
http://www.osvdb.org/85499