CVE Vulnerabilities

CVE-2014-6122

Published: Dec 23, 2014 | Modified: Sep 08, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.5 MEDIUM
AV:N/AC:L/Au:S/C:N/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

IBM Security AppScan Enterprise 8.5 before 8.5 IFix 002, 8.6 before 8.6 IFix 004, 8.7 before 8.7 IFix 004, 8.8 before 8.8 iFix 003, 9.0 before 9.0.0.1 iFix 003, and 9.0.1 before 9.0.1 iFix 001 allows remote authenticated users to write to arbitrary folders, and consequently execute arbitrary commands, via a modified argument.

Affected Software

Name Vendor Start Version End Version
Security_appscan Ibm 8.5 (including) 8.5 (including)
Security_appscan Ibm 8.6 (including) 8.6 (including)
Security_appscan Ibm 8.7 (including) 8.7 (including)
Security_appscan Ibm 8.8 (including) 8.8 (including)
Security_appscan Ibm 9.0 (including) 9.0 (including)
Security_appscan Ibm 9.0.0.1 (including) 9.0.0.1 (including)
Security_appscan_source Ibm 9.0.1 (including) 9.0.1 (including)

References