6.7
CVE-2022-25627
- EPSS 0.73%
- Veröffentlicht 16.12.2022 16:15:21
- Zuletzt bearbeitet 18.04.2025 14:15:17
- Quelle secure@symantec.com
- CVE-Watchlists
- Unerledigt
An authenticated administrator who has physical access to the environment can carry out Remote Command Execution on Management Console in Symantec Identity Manager 14.4
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Broadcom ≫ Symantec Identity Governance And Administration Version14.3
Broadcom ≫ Symantec Identity Governance And Administration Version14.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.73% | 0.719 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.7 | 0.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 6.7 | 0.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
CWE-284 Improper Access Control
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.