4.3
CVE-2014-0936
- EPSS 0.24%
- Published 08.06.2014 23:55:02
- Last modified 12.04.2025 10:46:40
- Source psirt@us.ibm.com
- Teams watchlist Login
- Open Login
IBM Security AppScan Source 8.0 through 9.0, when the publish-assessment permission is not properly restricted for the configured database server, transmits cleartext assessment data, which allows remote attackers to obtain sensitive information by sniffing the network.
Data is provided by the National Vulnerability Database (NVD)
Ibm ≫ Security Appscan Source Version8.0
Ibm ≫ Security Appscan Source Version8.5
Ibm ≫ Security Appscan Source Version8.6
Ibm ≫ Security Appscan Source Version8.7
Ibm ≫ Security Appscan Source Version8.8
Ibm ≫ Security Appscan Source Version9.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.24% | 0.439 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 4.3 | 3.2 | 6.4 |
AV:A/AC:H/Au:N/C:P/I:P/A:P
|