4.3
CVE-2016-0308
- EPSS 0.74%
- Veröffentlicht 08.02.2017 22:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
- Erkennungen
IBM Connections 5.5 and earlier is vulnerable to possible link manipulation attack that could result in the display of inappropriate background images.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Connections Version 4.0.0.0
Ibm ≫ Connections Version 4.5.0.0
Ibm ≫ Connections Version 5.0.0.0
Ibm ≫ Connections Version 5.5.0.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.74% | 0.505 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4.3 | 2.8 | 1.4 |
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
|
| NIST | 4 | 8 | 2.9 |
AV:N/AC:L/Au:S/C:N/I:P/A:N
|
CWE-284 Improper Access Control
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
http://www.ibm.com/support/docview.wss?uid=swg21986770
http://www.securityfocus.com/bid/92439