9.3
CVE-2014-4619
- EPSS 2.23%
- Veröffentlicht 28.08.2014 01:55:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle security_alert@emc.com
- Teams Watchlist Login
- Unerledigt Login
EMC RSA Identity Management and Governance (IMG) 6.5.x before 6.5.1 P11, 6.5.2 before P02HF01, and 6.8.x before 6.8.1 P07, when Novell Identity Manager (aka NovellIM) is used, allows remote attackers to bypass authentication via an arbitrary valid username.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Emc ≫ Rsa Identity Management And Governance Version6.5.0
Emc ≫ Rsa Identity Management And Governance Version6.5.1
Emc ≫ Rsa Identity Management And Governance Version6.5.2
Emc ≫ Rsa Identity Management And Governance Version6.8.0
Emc ≫ Rsa Identity Management And Governance Version6.8.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 2.23% | 0.83 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|
CWE-287 Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.