Lucene search

K
cve[email protected]CVE-2014-6135
HistoryDec 23, 2014 - 2:59 a.m.

CVE-2014-6135

2014-12-2302:59:03
CWE-20
web.nvd.nist.gov
20
ibm
security
appscan
enterprise
clickjacking
vulnerability
remote attackers
attack
clickjacking
nvd

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

6.7 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

68.3%

IBM Security AppScan Enterprise 8.5 before 8.5 IFix 002, 8.6 before 8.6 IFix 004, 8.7 before 8.7 IFix 004, 8.8 before 8.8 iFix 003, 9.0 before 9.0.0.1 iFix 003, and 9.0.1 before 9.0.1 iFix 001 allows remote attackers to conduct clickjacking attacks via unspecified vectors.

Affected configurations

NVD
Node
ibmsecurity_appscanMatch8.5enterprise
OR
ibmsecurity_appscanMatch8.6enterprise
OR
ibmsecurity_appscanMatch8.7enterprise
OR
ibmsecurity_appscanMatch8.8enterprise
OR
ibmsecurity_appscanMatch9.0enterprise
OR
ibmsecurity_appscanMatch9.0.0.1enterprise
OR
ibmsecurity_appscan_sourceMatch9.0.1enterprise

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

6.7 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

68.3%

Related for CVE-2014-6135