Lucene search

K
cveMitreCVE-2014-2565
HistoryApr 30, 2014 - 2:22 p.m.

CVE-2014-2565

2014-04-3014:22:06
CWE-78
mitre
web.nvd.nist.gov
20
blue coat
cas
command injection
vulnerability
cve-2014-2565

CVSS2

6.5

Attack Vector

ADJACENT_NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:A/AC:H/Au:S/C:C/I:C/A:C

AI Score

7.8

Confidence

Low

EPSS

0

Percentile

13.1%

The commandline interface in Blue Coat Content Analysis System (CAS) 1.1 before 1.1.4.2 allows remote administrators to execute arbitrary commands via unspecified vectors, related to “command injection.”

Affected configurations

Nvd
Node
bluecoatcontent_analysis_system_softwareRange1.1.2.1
OR
bluecoatcontent_analysis_system_softwareMatch1.1
OR
bluecoatcontent_analysis_system_softwareMatch1.1.1.1
AND
bluecoatcontent_analysis_systemMatch-
VendorProductVersionCPE
bluecoatcontent_analysis_system_software*cpe:2.3:a:bluecoat:content_analysis_system_software:*:*:*:*:*:*:*:*
bluecoatcontent_analysis_system_software1.1cpe:2.3:a:bluecoat:content_analysis_system_software:1.1:*:*:*:*:*:*:*
bluecoatcontent_analysis_system_software1.1.1.1cpe:2.3:a:bluecoat:content_analysis_system_software:1.1.1.1:*:*:*:*:*:*:*
bluecoatcontent_analysis_system-cpe:2.3:h:bluecoat:content_analysis_system:-:*:*:*:*:*:*:*

CVSS2

6.5

Attack Vector

ADJACENT_NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:A/AC:H/Au:S/C:C/I:C/A:C

AI Score

7.8

Confidence

Low

EPSS

0

Percentile

13.1%

Related for CVE-2014-2565