CVE-2014-0936
08.06.2014, 23:55
IBM Security AppScan Source 8.0 through 9.0, when the publish-assessment permission is not properly restricted for the configured database server, transmits cleartext assessment data, which allows remote attackers to obtain sensitive information by sniffing the network.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | security_appscan_source | 8.0 |
ibm | security_appscan_source | 8.5 |
ibm | security_appscan_source | 8.6 |
ibm | security_appscan_source | 8.7 |
ibm | security_appscan_source | 8.8 |
ibm | security_appscan_source | 9.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration