Lucene search

K
cve[email protected]CVE-2014-4819
HistorySep 18, 2014 - 10:55 a.m.

CVE-2014-4819

2014-09-1810:55:11
CWE-200
web.nvd.nist.gov
18
ibm
websphere
message broker
integration bus
security vulnerability
cve-2014-4819
information disclosure
nvd

4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:S/C:P/I:N/A:N

5.7 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

49.7%

The web user interface in IBM WebSphere Message Broker 8.0 before 8.0.0.6 and IBM Integration Bus 9.0 before 9.0.0.3 allows remote authenticated users to obtain sensitive information by reading the error page.

Affected configurations

NVD
Node
ibmwebsphere_message_brokerMatch8.0
OR
ibmwebsphere_message_brokerMatch8.0.0.1
OR
ibmwebsphere_message_brokerMatch8.0.0.2
OR
ibmwebsphere_message_brokerMatch8.0.0.3
OR
ibmwebsphere_message_brokerMatch8.0.0.4
OR
ibmwebsphere_message_brokerMatch8.0.0.5
Node
ibmintegration_busMatch9.0
OR
ibmintegration_busMatch9.0.0.1
OR
ibmintegration_busMatch9.0.0.2

4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:S/C:P/I:N/A:N

5.7 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

49.7%

Related for CVE-2014-4819