Lucene search

K
cve[email protected]CVE-2014-2545
HistoryApr 30, 2014 - 10:49 a.m.

CVE-2014-2545

2014-04-3010:49:05
CWE-200
web.nvd.nist.gov
20
tibco
managed file transfer
internet server
command center
slingshot
vault
cve-2014-2545
sensitive information disclosure
http request

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

6.4 Medium

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

74.8%

TIBCO Managed File Transfer Internet Server before 7.2.2, Managed File Transfer Command Center before 7.2.2, Slingshot before 1.9.1, and Vault before 1.0.1 allow remote attackers to obtain sensitive information via a crafted HTTP request.

Affected configurations

NVD
Node
tibcoslingshotRange1.9.0
OR
tibcoslingshotMatch1.7.0
OR
tibcoslingshotMatch1.8.0
OR
tibcoslingshotMatch1.8.1
Node
tibcovaultRange1.0.0
Node
tibcomanaged_file_transfer_command_centerRange7.2.1
OR
tibcomanaged_file_transfer_command_centerMatch6.7
OR
tibcomanaged_file_transfer_command_centerMatch7.0
OR
tibcomanaged_file_transfer_command_centerMatch7.0.1
OR
tibcomanaged_file_transfer_command_centerMatch7.1.0
OR
tibcomanaged_file_transfer_command_centerMatch7.2.0
Node
tibcomanaged_file_transfer_internet_serverRange7.2.1
OR
tibcomanaged_file_transfer_internet_serverMatch6.7
OR
tibcomanaged_file_transfer_internet_serverMatch7.0
OR
tibcomanaged_file_transfer_internet_serverMatch7.0.1
OR
tibcomanaged_file_transfer_internet_serverMatch7.1.0
OR
tibcomanaged_file_transfer_internet_serverMatch7.2.0

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

6.4 Medium

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

74.8%

Related for CVE-2014-2545