7.5
CVE-2013-2974
- EPSS 0.15%
- Published 29.01.2014 05:37:02
- Last modified 11.04.2025 00:51:21
- Source psirt@us.ibm.com
- Teams watchlist Login
- Open Login
The BIRT viewer in IBM Tivoli Application Dependency Discovery Manager (TADDM) 7.2.1.x before 7.2.1.5 allows remote authenticated users to bypass authorization checks and obtain report-administration privileges, and consequently create or delete reports or conduct SQL injection attacks, via crafted parameters to the BIRT reporting URL.
Data is provided by the National Vulnerability Database (NVD)
Ibm ≫ Tivoli Application Dependency Discovery Manager Version7.2.1.1
Ibm ≫ Tivoli Application Dependency Discovery Manager Version7.2.1.2
Ibm ≫ Tivoli Application Dependency Discovery Manager Version7.2.1.3
Ibm ≫ Tivoli Application Dependency Discovery Manager Version7.2.1.4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.15% | 0.324 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|