10

CVE-2015-7425

The Data Protection component in the VMware vSphere GUI in IBM Tivoli Storage Manager for Virtual Environments: Data Protection for VMware (aka Spectrum Protect for Virtual Environments) 6.3 before 6.3.2.5, 6.4 before 6.4.3.1, and 7.1 before 7.1.4 and Tivoli Storage FlashCopy Manager for VMware (aka Spectrum Protect Snapshot) 3.1 before 3.1.1.3, 3.2 before 3.2.0.6, and 4.1 before 4.1.4 allows remote attackers to obtain administrative privileges via a crafted URL that triggers back-end function execution.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
IbmTivoli Storage Flashcopy Manager For Vmware Version3.1 SwPlatformvmware
IbmTivoli Storage Flashcopy Manager For Vmware Version3.1.1 SwPlatformvmware
IbmTivoli Storage Flashcopy Manager For Vmware Version3.2 SwPlatformvmware
IbmTivoli Storage Flashcopy Manager For Vmware Version6.3 SwPlatformvmware
IbmTivoli Storage Flashcopy Manager For Vmware Version6.4 SwPlatformvmware
IbmTivoli Storage Flashcopy Manager For Vmware Version6.4.2 SwPlatformvmware
IbmTivoli Storage Flashcopy Manager For Vmware Version6.4.3 SwPlatformvmware
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 9.88% 0.922
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 10 3.9 6
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C