7.5
CVE-2014-5504
- EPSS 25.45%
- Veröffentlicht 04.09.2014 17:55:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
SolarWinds Log and Event Manager before 6.0 uses "static" credentials, which makes it easier for remote attackers to obtain access to the database and execute arbitrary code via unspecified vectors, related to HyperSQL.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Solarwinds ≫ Log And Event Manager Version <= 5.7.0
Solarwinds ≫ Log And Event Manager Version5.2.0
Solarwinds ≫ Log And Event Manager Version5.4.0
Solarwinds ≫ Log And Event Manager Version5.5.0
Solarwinds ≫ Log And Event Manager Version5.6.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 25.45% | 0.958 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|