4.4
CVE-2015-1946
- EPSS 0.35%
- Veröffentlicht 14.07.2015 17:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Erkennungen
IBM WebSphere Application Server (WAS) 8.5 before 8.5.5.6, and WebSphere Virtual Enterprise 7.0 before 7.0.0.6 for WebSphere Application Server (WAS) 7.0 and 8.0, does not properly implement user roles, which allows local users to gain privileges via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Websphere Application Server Version 7.0
Ibm ≫ Websphere Application Server Version 8.0.0.0
Ibm ≫ Websphere Application Server Version 8.5.0.0
Ibm ≫ Websphere Application Server Version 8.5.0.1
Ibm ≫ Websphere Application Server Version 8.5.0.2
Ibm ≫ Websphere Application Server Version 8.5.5.0
Ibm ≫ Websphere Application Server Version 8.5.5.1
Ibm ≫ Websphere Application Server Version 8.5.5.2
Ibm ≫ Websphere Application Server Version 8.5.5.3
Ibm ≫ Websphere Application Server Version 8.5.5.4
Ibm ≫ Websphere Application Server Version 8.5.5.5
Ibm ≫ Websphere Virtual Enterprise Version 7.0
Ibm ≫ Websphere Virtual Enterprise Version 7.0.0.1
Ibm ≫ Websphere Virtual Enterprise Version 7.0.0.2
Ibm ≫ Websphere Virtual Enterprise Version 7.0.0.3
Ibm ≫ Websphere Virtual Enterprise Version 7.0.0.4
Ibm ≫ Websphere Virtual Enterprise Version 7.0.0.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.35% | 0.269 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4.4 | 3.4 | 6.4 |
AV:L/AC:M/Au:N/C:P/I:P/A:P
|
http://www-01.ibm.com/support/docview.wss?uid=swg21959083
http://www-01.ibm.com/support/docview.wss?uid=swg1PI35180
http://www.securityfocus.com/bid/75496