Lucene search

K
cveIbmCVE-2012-3298
HistorySep 25, 2012 - 8:55 p.m.

CVE-2012-3298

2012-09-2520:55:00
ibm
web.nvd.nist.gov
24
cve-2012-3298
ibm
websphere commerce
vulnerability
rest services
remote attackers
sensitive information
denial of service

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.8

Confidence

Low

EPSS

0.006

Percentile

78.7%

Unspecified vulnerability in the REST services framework in IBM WebSphere Commerce 7.0 Feature Pack 4 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unspecified vectors.

Affected configurations

Nvd
Node
ibmwebsphere_commerceMatch7.0fp4
VendorProductVersionCPE
ibmwebsphere_commerce7.0cpe:2.3:a:ibm:websphere_commerce:7.0:fp4:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.8

Confidence

Low

EPSS

0.006

Percentile

78.7%

Related for CVE-2012-3298