Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-8927

Опубликовано: 25 мая 2015
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

Common Inventory Technology (CIT) before 2.7.0.2050 in IBM License Metric Tool 7.2.2, 7.5, and 9; Endpoint Manger for Software Use Analysis 9; and Tivoli Asset Discovery for Distributed 7.2.2 and 7.5 allows remote attackers to cause a denial of service (CPU consumption or application crash) via a crafted XML query, a different vulnerability than CVE-2014-8926.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:ibm:endpoint_manager_family:9.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:license_metric_tool:7.2.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:license_metric_tool:7.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:license_metric_tool:9.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:tivoli_asset_discovery_for_distributed:7.2.2.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:tivoli_asset_discovery_for_distributed:7.5:*:*:*:*:*:*:*

EPSS

Процентиль: 68%
0.00572
Низкий

5 Medium

CVSS2

Дефекты

CWE-399

Связанные уязвимости

github
больше 3 лет назад

Common Inventory Technology (CIT) before 2.7.0.2050 in IBM License Metric Tool 7.2.2, 7.5, and 9; Endpoint Manger for Software Use Analysis 9; and Tivoli Asset Discovery for Distributed 7.2.2 and 7.5 allows remote attackers to cause a denial of service (CPU consumption or application crash) via a crafted XML query, a different vulnerability than CVE-2014-8926.

EPSS

Процентиль: 68%
0.00572
Низкий

5 Medium

CVSS2

Дефекты

CWE-399