4.9
CVE-2014-1469
- EPSS 0.06%
- Veröffentlicht 18.08.2014 11:15:25
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
BlackBerry Enterprise Server 5.x before 5.0.4 MR7 and Enterprise Service 10.x before 10.2.2 log cleartext credentials during exception handling, which allows local users to obtain sensitive information by reading the exception log file.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Blackberry ≫ Blackberry Enterprise Service Version10.0
Blackberry ≫ Blackberry Enterprise Service Version10.1.0
Blackberry ≫ Blackberry Enterprise Service Version10.1.2
Blackberry ≫ Blackberry Enterprise Service Version10.2.0
Blackberry ≫ Blackberry Enterprise Service Version10.2.1
Blackberry ≫ Enterprise Server Updatemr6 SwPlatformexchange_server Version <= 5.0.4
Blackberry ≫ Enterprise Server Updatemr6 SwPlatformgroupwise Version <= 5.0.4
Blackberry ≫ Enterprise Server Updatemr6 SwPlatformlotus_domino Version <= 5.0.4
Blackberry ≫ Enterprise Server Express Version5.0.4 SwPlatformexchange_server
Blackberry ≫ Enterprise Server Express Version5.0.4 SwPlatformlotus_domino
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.06% | 0.192 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.9 | 3.9 | 6.9 |
AV:L/AC:L/Au:N/C:C/I:N/A:N
|