7.5
CVE-2012-4816
- EPSS 1.32%
- Veröffentlicht 26.12.2012 18:55:01
- Zuletzt bearbeitet 16.06.2026 23:45:43
- Erkennungen
IBM Rational Automation Framework (RAF) 3.x through 3.0.0.5 allows remote attackers to bypass intended Env Gen Wizard (aka Environment Generation Wizard) access restrictions by visiting context roots in HTTP sessions on port 8080.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Rational Automation Framework Version 3.0
Ibm ≫ Rational Automation Framework Version 3.0.0.1
Ibm ≫ Rational Automation Framework Version 3.0.0.2
Ibm ≫ Rational Automation Framework Version 3.0.0.3
Ibm ≫ Rational Automation Framework Version 3.0.0.4
Ibm ≫ Rational Automation Framework Version 3.0.0.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.32% | 0.671 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://www-01.ibm.com/support/docview.wss?uid=swg21620359
https://exchange.xforce.ibmcloud.com/vulnerabilities/78379