5
CVE-2014-0842
- EPSS 0.23%
- Published 26.02.2014 01:29:36
- Last modified 11.04.2025 00:51:21
- Source psirt@us.ibm.com
- Teams watchlist Login
- Open Login
The account-creation functionality in IBM Rational Focal Point 6.4.x and 6.5.x before 6.5.2.3 and 6.6.x before 6.6.1 places the new user's default password within the creation page, which allows remote attackers to obtain sensitive information by reading the HTML source code.
Data is provided by the National Vulnerability Database (NVD)
Ibm ≫ Rational Focal Point Version6.4
Ibm ≫ Rational Focal Point Version6.4.0.1
Ibm ≫ Rational Focal Point Version6.4.1.0
Ibm ≫ Rational Focal Point Version6.4.1.1
Ibm ≫ Rational Focal Point Version6.4.1.2
Ibm ≫ Rational Focal Point Version6.4.1.3
Ibm ≫ Rational Focal Point Version6.5
Ibm ≫ Rational Focal Point Version6.5.0.1
Ibm ≫ Rational Focal Point Version6.5.0.2
Ibm ≫ Rational Focal Point Version6.5.1
Ibm ≫ Rational Focal Point Version6.5.1.1
Ibm ≫ Rational Focal Point Version6.5.2
Ibm ≫ Rational Focal Point Version6.5.2.1
Ibm ≫ Rational Focal Point Version6.5.2.2
Ibm ≫ Rational Focal Point Version6.5.2.3
Ibm ≫ Rational Focal Point Version6.6
Ibm ≫ Rational Focal Point Version6.6.0.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.23% | 0.422 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|