CVE-2014-0904 - CERT CVE
ID CVE-2014-0904
Sažetak The update process in IBM Security AppScan Standard 7.9 through 8.8 does not require integrity checks of downloaded files, which allows remote attackers to execute arbitrary code via a crafted file.
Reference
CVSS
Base: 7.6
Impact: 10.0
Exploitability:4.9
Pristup
VektorSloženostAutentikacija
NETWORK HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
COMPLETE COMPLETE COMPLETE
CVSS vektor AV:N/AC:H/Au:N/C:C/I:C/A:C
Zadnje važnije ažuriranje 29-08-2017 - 01:34
Objavljeno 26-03-2014 - 10:55