Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-9768

Опубликовано: 18 мар. 2016
Источник: nvd
CVSS3: 8.8
CVSS2: 9
EPSS Низкий

Описание

IBM Tivoli NetView Access Services (NVAS) allows remote authenticated users to gain privileges by entering the ADM command and modifying a "page ID" field to the EMSPG2 transaction code. NOTE: the vendor's perspective is that configuration and use of available security controls in the NVAS product mitigates the reported vulnerability

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:ibm:tivoli_netview_access_services:-:*:*:*:*:*:*:*

EPSS

Процентиль: 71%
0.00659
Низкий

8.8 High

CVSS3

9 Critical

CVSS2

Дефекты

CWE-264

Связанные уязвимости

CVSS3: 8.8
github
больше 3 лет назад

** DISPUTED ** IBM Tivoli NetView Access Services (NVAS) allows remote authenticated users to gain privileges by entering the ADM command and modifying a "page ID" field to the EMSPG2 transaction code. NOTE: the vendor's perspective is that configuration and use of available security controls in the NVAS product mitigates the reported vulnerability.

EPSS

Процентиль: 71%
0.00659
Низкий

8.8 High

CVSS3

9 Critical

CVSS2

Дефекты

CWE-264