CVE-2014-6155

Multiple directory traversal vulnerabilities in the ServiceRegistry UI in IBM WebSphere Service Registry and Repository (WSRR) 7.5.x through 7.5.0.4, 8.0.x before 8.0.0.3, and 8.5.x before 8.5.0.1 allow remote authenticated users to read arbitrary files via unspecified vectors.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:S/C:P/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
Affected Products (NVD)
VendorProductVersion
ibmwebsphere_service_registry_and_repository
7.5.0.0
ibmwebsphere_service_registry_and_repository
7.5.0.1
ibmwebsphere_service_registry_and_repository
7.5.0.2
ibmwebsphere_service_registry_and_repository
7.5.0.3
ibmwebsphere_service_registry_and_repository
7.5.0.4
ibmwebsphere_service_registry_and_repository
8.0
ibmwebsphere_service_registry_and_repository
8.0.0.1
ibmwebsphere_service_registry_and_repository
8.0.0.2
ibmwebsphere_service_registry_and_repository
8.5
𝑥
= Vulnerable software versions