Lucene search

K
cveIbmCVE-2014-6110
HistoryNov 18, 2014 - 1:59 a.m.

CVE-2014-6110

2014-11-1801:59:06
CWE-284
ibm
web.nvd.nist.gov
24
ibm
security
identity manager
remote access
vulnerability
cve-2014-6110
nvd

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:N/C:N/I:P/A:N

AI Score

4.2

Confidence

High

EPSS

0.002

Percentile

61.4%

IBM Security Identity Manager 6.x before 6.0.0.3 IF14 does not properly perform logout actions, which allows remote attackers to access sessions by leveraging an unattended workstation.

Affected configurations

Nvd
Node
ibmsecurity_identity_managerMatch6.0.0.0
OR
ibmsecurity_identity_managerMatch6.0.0.1
OR
ibmsecurity_identity_managerMatch6.0.0.2
OR
ibmsecurity_identity_managerMatch6.0.0.3
VendorProductVersionCPE
ibmsecurity_identity_manager6.0.0.0cpe:2.3:a:ibm:security_identity_manager:6.0.0.0:*:*:*:*:*:*:*
ibmsecurity_identity_manager6.0.0.1cpe:2.3:a:ibm:security_identity_manager:6.0.0.1:*:*:*:*:*:*:*
ibmsecurity_identity_manager6.0.0.2cpe:2.3:a:ibm:security_identity_manager:6.0.0.2:*:*:*:*:*:*:*
ibmsecurity_identity_manager6.0.0.3cpe:2.3:a:ibm:security_identity_manager:6.0.0.3:*:*:*:*:*:*:*

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:N/C:N/I:P/A:N

AI Score

4.2

Confidence

High

EPSS

0.002

Percentile

61.4%

Related for CVE-2014-6110