CVE-2014-6155

EUVD-2014-6041
Multiple directory traversal vulnerabilities in the ServiceRegistry UI in IBM WebSphere Service Registry and Repository (WSRR) 7.5.x through 7.5.0.4, 8.0.x before 8.0.0.3, and 8.5.x before 8.5.0.1 allow remote authenticated users to read arbitrary files via unspecified vectors.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:S/C:P/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 54%
Affected Products (NVD)
VendorProductVersion
ibmwebsphere_service_registry_and_repository
7.5.0.0
ibmwebsphere_service_registry_and_repository
7.5.0.1
ibmwebsphere_service_registry_and_repository
7.5.0.2
ibmwebsphere_service_registry_and_repository
7.5.0.3
ibmwebsphere_service_registry_and_repository
7.5.0.4
ibmwebsphere_service_registry_and_repository
8.0
ibmwebsphere_service_registry_and_repository
8.0.0.1
ibmwebsphere_service_registry_and_repository
8.0.0.2
ibmwebsphere_service_registry_and_repository
8.5
𝑥
= Vulnerable software versions