6.5

CVE-2014-4844

The import/export functionality in IBM Business Process Manager (BPM) 7.5.x through 7.5.1.2, 8.0.x through 8.0.1.3, and 8.5.x through 8.5.5 allows remote authenticated users to bypass intended access restrictions via a project action for a (1) process application or (2) toolkit.

Data is provided by the National Vulnerability Database (NVD)
IbmBusiness Process Manager Version7.5.0.0
IbmBusiness Process Manager Version7.5.0.1
IbmBusiness Process Manager Version7.5.1.0
IbmBusiness Process Manager Version7.5.1.1
IbmBusiness Process Manager Version7.5.1.2
IbmBusiness Process Manager Version8.0.0.0
IbmBusiness Process Manager Version8.0.1.0
IbmBusiness Process Manager Version8.0.1.1
IbmBusiness Process Manager Version8.0.1.2
IbmBusiness Process Manager Version8.5.0.0
IbmBusiness Process Manager Version8.5.0.1
IbmBusiness Process Manager Version8.5.5.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.22% 0.412
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.5 8 6.4
AV:N/AC:L/Au:S/C:P/I:P/A:P