4.9
CVE-2014-6193
- EPSS 1.58%
- Veröffentlicht 19.12.2014 02:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Erkennungen
IBM WebSphere Portal 8.0.0 through 8.0.0.1 CF14 and 8.5.0 before CF04, when the Managed Pages setting is enabled, allows remote authenticated users to write to pages via an XML injection attack.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Websphere Portal Version 8.0.0.0
Ibm ≫ Websphere Portal Version 8.0.0.1
Ibm ≫ Websphere Portal Version 8.5.0.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.58% | 0.723 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4.9 | 6.8 | 4.9 |
AV:N/AC:M/Au:S/C:N/I:P/A:P
|
http://www-01.ibm.com/support/docview.wss?uid=swg21692107
http://www-01.ibm.com/support/docview.wss?uid=swg1PI28699
https://exchange.xforce.ibmcloud.com/vulnerabilities/98567