CVE Vulnerabilities

CVE-2014-8895

Published: Jan 29, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM TRIRIGA Application Platform 3.2.1.x, 3.3.2 before 3.3.2.3, and 3.4.1 before 3.4.1.1 allows remote attackers to bypass intended access restrictions and read the image files of arbitrary users via a crafted URL.

Affected Software

NameVendorStart VersionEnd Version
Tririga_application_platformIbm3.2.1 (including)3.2.1 (including)
Tririga_application_platformIbm3.3.2.0 (including)3.3.2.0 (including)
Tririga_application_platformIbm3.3.2.1 (including)3.3.2.1 (including)
Tririga_application_platformIbm3.3.2.2 (including)3.3.2.2 (including)
Tririga_application_platformIbm3.4.0.0 (including)3.4.0.0 (including)
Tririga_application_platformIbm3.4.0.1 (including)3.4.0.1 (including)
Tririga_application_platformIbm3.4.1.0 (including)3.4.1.0 (including)

References