Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-6745

Опубликовано: 31 авг. 2015
Источник: nvd
CVSS2: 4.6
EPSS Низкий

Описание

Basware Banking (Maksuliikenne) 8.90.07.X relies on the client to enforce account locking, which allows local users to bypass that security mechanism by deleting the entry from the locking table. NOTE: this identifier was SPLIT from CVE-2015-0942 per ADT2 and ADT3 due to different vulnerability type and different affected versions. NOTE: this vulnerability exists because of an incorrect fix for CVE-2015-6744.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:basware:banking:*:*:*:*:*:*:*:*
Версия до 8.90.07 (включая)

EPSS

Процентиль: 16%
0.00052
Низкий

4.6 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

github
больше 3 лет назад

Basware Banking (Maksuliikenne) 8.90.07.X relies on the client to enforce account locking, which allows local users to bypass that security mechanism by deleting the entry from the locking table. NOTE: this identifier was SPLIT from CVE-2015-0942 per ADT2 and ADT3 due to different vulnerability type and different affected versions. NOTE: this vulnerability exists because of an incorrect fix for CVE-2015-6744.

EPSS

Процентиль: 16%
0.00052
Низкий

4.6 Medium

CVSS2

Дефекты

CWE-264