Lucene search

K
cveMitreCVE-2014-2075
HistoryFeb 27, 2014 - 11:55 a.m.

CVE-2014-2075

2014-02-2711:55:03
CWE-287
mitre
web.nvd.nist.gov
21
cve-2014-2075
tibco
enterprise administrator
sdk
remote attackers
arbitrary commands

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.1

Confidence

Low

EPSS

0.006

Percentile

78.2%

TIBCO Enterprise Administrator 1.0.0 and Enterprise Administrator SDK 1.0.0 do not properly enforce administrative authentication requirements, which allows remote attackers to execute arbitrary commands via unspecified vectors.

Affected configurations

Nvd
Node
tibcoenterprise_administratorMatch1.0.0
OR
tibcoenterprise_administrator_sdkMatch1.0.0
VendorProductVersionCPE
tibcoenterprise_administrator1.0.0cpe:2.3:a:tibco:enterprise_administrator:1.0.0:*:*:*:*:*:*:*
tibcoenterprise_administrator_sdk1.0.0cpe:2.3:a:tibco:enterprise_administrator_sdk:1.0.0:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.1

Confidence

Low

EPSS

0.006

Percentile

78.2%

Related for CVE-2014-2075