CVE-2014-6120

EUVD-2014-6006
IBM Rational AppScan Source 8.0 through 8.0.0.2 and 8.5 through 8.5.0.1 and Security AppScan Source 8.6 through 8.6.0.2, 8.7 through 8.7.0.1, 8.8, 9.0 through 9.0.0.1, and 9.0.1 allow remote attackers to execute arbitrary commands on the installation server via unspecified vectors. IBM X-Force ID: 96721.
Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 88%
Affected Products (NVD)
VendorProductVersion
ibmrational_appscan_source
8.0.0.0
ibmrational_appscan_source
8.0.0.1
ibmrational_appscan_source
8.0.0.2
ibmrational_appscan_source
8.5.0.0
ibmrational_appscan_source
8.5.0.1
ibmsecurity_appscan_source
8.6.0.0
ibmsecurity_appscan_source
8.6.0.1
ibmsecurity_appscan_source
8.6.0.2
ibmsecurity_appscan_source
8.7
ibmsecurity_appscan_source
8.7.0.1
ibmsecurity_appscan_source
8.8
ibmsecurity_appscan_source
9.0.0.0
ibmsecurity_appscan_source
9.0.0.1
ibmsecurity_appscan_source
9.0.1
𝑥
= Vulnerable software versions