Lucene search

K
nvd[email protected]NVD:CVE-2014-6141
HistoryFeb 02, 2015 - 1:59 a.m.

CVE-2014-6141

2015-02-0201:59:01
CWE-264
web.nvd.nist.gov
2

CVSS2

8.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:C/I:C/A:C

AI Score

6.9

Confidence

Low

EPSS

0.003

Percentile

65.5%

IBM Tivoli Monitoring (ITM) 6.2.0 through FP03, 6.2.1 through FP04, 6.2.2 through FP09, 6.2.3 through FP05, and 6.3.0 before FP04 allows remote authenticated users to bypass intended access restrictions and execute arbitrary commands by leveraging Take Action view authority to modify in-progress commands.

Affected configurations

Nvd
Node
ibmtivoli_monitoringMatch6.2.0
OR
ibmtivoli_monitoringMatch6.2.0.1
OR
ibmtivoli_monitoringMatch6.2.0.2
OR
ibmtivoli_monitoringMatch6.2.0.3
OR
ibmtivoli_monitoringMatch6.2.1
OR
ibmtivoli_monitoringMatch6.2.1.0
OR
ibmtivoli_monitoringMatch6.2.1.1
OR
ibmtivoli_monitoringMatch6.2.1.2
OR
ibmtivoli_monitoringMatch6.2.1.3
OR
ibmtivoli_monitoringMatch6.2.1.4
OR
ibmtivoli_monitoringMatch6.2.2
OR
ibmtivoli_monitoringMatch6.2.2.0
OR
ibmtivoli_monitoringMatch6.2.2.1
OR
ibmtivoli_monitoringMatch6.2.2.2
OR
ibmtivoli_monitoringMatch6.2.2.3
OR
ibmtivoli_monitoringMatch6.2.2.4
OR
ibmtivoli_monitoringMatch6.2.2.5
OR
ibmtivoli_monitoringMatch6.2.2.6
OR
ibmtivoli_monitoringMatch6.2.2.7
OR
ibmtivoli_monitoringMatch6.2.2.8
OR
ibmtivoli_monitoringMatch6.2.2.9
OR
ibmtivoli_monitoringMatch6.2.3
OR
ibmtivoli_monitoringMatch6.2.3.0
OR
ibmtivoli_monitoringMatch6.2.3.1
OR
ibmtivoli_monitoringMatch6.2.3.2
OR
ibmtivoli_monitoringMatch6.2.3.3
OR
ibmtivoli_monitoringMatch6.2.3.4
OR
ibmtivoli_monitoringMatch6.2.3.5
OR
ibmtivoli_monitoringMatch6.3.0
OR
ibmtivoli_monitoringMatch6.3.0.1
OR
ibmtivoli_monitoringMatch6.3.0.2
OR
ibmtivoli_monitoringMatch6.3.0.3
OR
ibmtivoli_monitoringMatch6.3.0.4
VendorProductVersionCPE
ibmtivoli_monitoring6.2.0cpe:2.3:a:ibm:tivoli_monitoring:6.2.0:*:*:*:*:*:*:*
ibmtivoli_monitoring6.2.0.1cpe:2.3:a:ibm:tivoli_monitoring:6.2.0.1:*:*:*:*:*:*:*
ibmtivoli_monitoring6.2.0.2cpe:2.3:a:ibm:tivoli_monitoring:6.2.0.2:*:*:*:*:*:*:*
ibmtivoli_monitoring6.2.0.3cpe:2.3:a:ibm:tivoli_monitoring:6.2.0.3:*:*:*:*:*:*:*
ibmtivoli_monitoring6.2.1cpe:2.3:a:ibm:tivoli_monitoring:6.2.1:*:*:*:*:*:*:*
ibmtivoli_monitoring6.2.1.0cpe:2.3:a:ibm:tivoli_monitoring:6.2.1.0:*:*:*:*:*:*:*
ibmtivoli_monitoring6.2.1.1cpe:2.3:a:ibm:tivoli_monitoring:6.2.1.1:*:*:*:*:*:*:*
ibmtivoli_monitoring6.2.1.2cpe:2.3:a:ibm:tivoli_monitoring:6.2.1.2:*:*:*:*:*:*:*
ibmtivoli_monitoring6.2.1.3cpe:2.3:a:ibm:tivoli_monitoring:6.2.1.3:*:*:*:*:*:*:*
ibmtivoli_monitoring6.2.1.4cpe:2.3:a:ibm:tivoli_monitoring:6.2.1.4:*:*:*:*:*:*:*
Rows per page:
1-10 of 331

CVSS2

8.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:C/I:C/A:C

AI Score

6.9

Confidence

Low

EPSS

0.003

Percentile

65.5%

Related for NVD:CVE-2014-6141