CVE-2014-5158

The (1) av-centerd SOAP service and (2) backup command in the ossim-framework service in AlienVault OSSIM before 4.6.0 allows remote attackers to execute arbitrary commands via unspecified vectors.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 89%
VendorProductVersion
alienvaultopen_source_security_information_management
𝑥
≤ 4.5
alienvaultopen_source_security_information_management
1.0.4
alienvaultopen_source_security_information_management
1.0.6
alienvaultopen_source_security_information_management
2.1
alienvaultopen_source_security_information_management
2.1.2
alienvaultopen_source_security_information_management
2.1.5
alienvaultopen_source_security_information_management
2.1.5-1
alienvaultopen_source_security_information_management
2.1.5-2
alienvaultopen_source_security_information_management
2.1.5-3
alienvaultopen_source_security_information_management
3.1
alienvaultopen_source_security_information_management
3.1.9
alienvaultopen_source_security_information_management
3.1.10
alienvaultopen_source_security_information_management
3.1.12
alienvaultopen_source_security_information_management
4.0
alienvaultopen_source_security_information_management
4.0.3
alienvaultopen_source_security_information_management
4.0.4
alienvaultopen_source_security_information_management
4.1
alienvaultopen_source_security_information_management
4.1.2
alienvaultopen_source_security_information_management
4.1.3
alienvaultopen_source_security_information_management
4.2
alienvaultopen_source_security_information_management
4.2.2
alienvaultopen_source_security_information_management
4.2.3
alienvaultopen_source_security_information_management
4.3
alienvaultopen_source_security_information_management
4.3.1
alienvaultopen_source_security_information_management
4.3.2
alienvaultopen_source_security_information_management
4.3.3
alienvaultopen_source_security_information_management
4.4
𝑥
= Vulnerable software versions