Lucene search

K
cveIbmCVE-2014-3043
HistoryJul 19, 2014 - 5:09 a.m.

CVE-2014-3043

2014-07-1905:09:27
CWE-264
ibm
web.nvd.nist.gov
27
cve-2014-3043
ibm
storwize
v7000
unified
nvd
security
vulnerability
remote access
authentication

CVSS2

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

AI Score

6.5

Confidence

Low

EPSS

0.002

Percentile

59.9%

IBM Storwize V7000 Unified 1.3.x and 1.4.x before 1.4.3.3 allows remote authenticated users to gain privileges by leveraging access to the service account.

Affected configurations

Nvd
Node
ibmstorwize_unified_v7000_softwareMatch1.3.0.0
OR
ibmstorwize_unified_v7000_softwareMatch1.3.1.0
OR
ibmstorwize_unified_v7000_softwareMatch1.4.0.0
OR
ibmstorwize_unified_v7000_softwareMatch1.4.0.1
OR
ibmstorwize_unified_v7000_softwareMatch1.4.0.2
OR
ibmstorwize_unified_v7000_softwareMatch1.4.0.3
OR
ibmstorwize_unified_v7000_softwareMatch1.4.0.4
OR
ibmstorwize_unified_v7000_softwareMatch1.4.0.5
OR
ibmstorwize_unified_v7000_softwareMatch1.4.1.0
OR
ibmstorwize_unified_v7000_softwareMatch1.4.1.1
OR
ibmstorwize_unified_v7000_softwareMatch1.4.2.0
OR
ibmstorwize_unified_v7000_softwareMatch1.4.2.1
OR
ibmstorwize_unified_v7000_softwareMatch1.4.3.0
OR
ibmstorwize_unified_v7000_softwareMatch1.4.3.1
OR
ibmstorwize_unified_v7000_softwareMatch1.4.3.2
AND
ibmstorwize_unified_v7000Match-
VendorProductVersionCPE
ibmstorwize_unified_v7000_software1.3.0.0cpe:2.3:a:ibm:storwize_unified_v7000_software:1.3.0.0:*:*:*:*:*:*:*
ibmstorwize_unified_v7000_software1.3.1.0cpe:2.3:a:ibm:storwize_unified_v7000_software:1.3.1.0:*:*:*:*:*:*:*
ibmstorwize_unified_v7000_software1.4.0.0cpe:2.3:a:ibm:storwize_unified_v7000_software:1.4.0.0:*:*:*:*:*:*:*
ibmstorwize_unified_v7000_software1.4.0.1cpe:2.3:a:ibm:storwize_unified_v7000_software:1.4.0.1:*:*:*:*:*:*:*
ibmstorwize_unified_v7000_software1.4.0.2cpe:2.3:a:ibm:storwize_unified_v7000_software:1.4.0.2:*:*:*:*:*:*:*
ibmstorwize_unified_v7000_software1.4.0.3cpe:2.3:a:ibm:storwize_unified_v7000_software:1.4.0.3:*:*:*:*:*:*:*
ibmstorwize_unified_v7000_software1.4.0.4cpe:2.3:a:ibm:storwize_unified_v7000_software:1.4.0.4:*:*:*:*:*:*:*
ibmstorwize_unified_v7000_software1.4.0.5cpe:2.3:a:ibm:storwize_unified_v7000_software:1.4.0.5:*:*:*:*:*:*:*
ibmstorwize_unified_v7000_software1.4.1.0cpe:2.3:a:ibm:storwize_unified_v7000_software:1.4.1.0:*:*:*:*:*:*:*
ibmstorwize_unified_v7000_software1.4.1.1cpe:2.3:a:ibm:storwize_unified_v7000_software:1.4.1.1:*:*:*:*:*:*:*
Rows per page:
1-10 of 161

CVSS2

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

AI Score

6.5

Confidence

Low

EPSS

0.002

Percentile

59.9%

Related for CVE-2014-3043