CVE-2014-6122

EUVD-2014-6008
IBM Security AppScan Enterprise 8.5 before 8.5 IFix 002, 8.6 before 8.6 IFix 004, 8.7 before 8.7 IFix 004, 8.8 before 8.8 iFix 003, 9.0 before 9.0.0.1 iFix 003, and 9.0.1 before 9.0.1 iFix 001 allows remote authenticated users to write to arbitrary folders, and consequently execute arbitrary commands, via a modified argument.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:S/C:N/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 79%
Affected Products (NVD)
VendorProductVersion
ibmsecurity_appscan
8.5
ibmsecurity_appscan
8.6
ibmsecurity_appscan
8.7
ibmsecurity_appscan
8.8
ibmsecurity_appscan
9.0
ibmsecurity_appscan
9.0.0.1
ibmsecurity_appscan_source
9.0.1
𝑥
= Vulnerable software versions
Common Weakness Enumeration