CVE-2014-0960

EUVD-2014-0990
IBM PureApplication System 1.0 before 1.0.0.4 cfix8 and 1.1 before 1.1.0.4 IF1 allows remote authenticated users to bypass intended access restrictions by establishing an SSH session from a deployed virtual machine.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.6 UNKNOWN
LOCAL
MEDIUM
AV:L/AC:M/Au:S/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 31%
Affected Products (NVD)
VendorProductVersion
ibmpureapplication_system
1.0.0.0
ibmpureapplication_system
1.0.0.1
ibmpureapplication_system
1.0.0.2
ibmpureapplication_system
1.0.0.3
ibmpureapplication_system
1.0.0.4
ibmpureapplication_system
1.1.0.0
ibmpureapplication_system
1.1.0.1
ibmpureapplication_system
1.1.0.2
ibmpureapplication_system
1.1.0.3
ibmpureapplication_system
1.1.0.4
𝑥
= Vulnerable software versions
Common Weakness Enumeration