4.9
CVE-2014-8894
- EPSS 0.18%
- Veröffentlicht 29.01.2015 01:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle psirt@us.ibm.com
- CVE-Watchlists
- Unerledigt
Open redirect vulnerability in IBM TRIRIGA Application Platform 3.2.1.x, 3.3.2 before 3.3.2.3, and 3.4.1 before 3.4.1.1 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via the out parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Tririga Application Platform Version3.2.1
Ibm ≫ Tririga Application Platform Version3.3.2.0
Ibm ≫ Tririga Application Platform Version3.3.2.1
Ibm ≫ Tririga Application Platform Version3.3.2.2
Ibm ≫ Tririga Application Platform Version3.4.0.0
Ibm ≫ Tririga Application Platform Version3.4.0.1
Ibm ≫ Tririga Application Platform Version3.4.1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.18% | 0.365 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.9 | 6.8 | 4.9 |
AV:N/AC:M/Au:S/C:P/I:P/A:N
|