CVE-2014-6222

EUVD-2014-6108
Directory traversal vulnerability in IBM Marketing Operations 7.x and 8.x before 8.5.0.7.2, 8.6.x before 8.6.0.8, 9.0.x before 9.0.0.4.1, 9.1.0.x before 9.1.0.5, and 9.1.1.x before 9.1.1.2 allows remote authenticated users to read arbitrary files via a .. (dot dot) in a URL.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:S/C:P/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 60%
Affected Products (NVD)
VendorProductVersion
ibmmarketing_operations
7.2.0.0
ibmmarketing_operations
7.2.0.4
ibmmarketing_operations
7.2.1.0
ibmmarketing_operations
7.2.1.12
ibmmarketing_operations
7.3.2.0
ibmmarketing_operations
7.3.2.1
ibmmarketing_operations
7.3.2.8
ibmmarketing_operations
7.4.0.0
ibmmarketing_operations
7.4.0.2
ibmmarketing_operations
7.4.1.0
ibmmarketing_operations
7.4.1.6
ibmmarketing_operations
7.4.2.0
ibmmarketing_operations
7.4.2.7
ibmmarketing_operations
7.5.0.0
ibmmarketing_operations
7.5.0.1
ibmmarketing_operations
7.5.2.0
ibmmarketing_operations
7.5.2.3
ibmmarketing_operations
7.5.3.0
ibmmarketing_operations
7.5.3.7
ibmmarketing_operations
7.5.3.8
ibmmarketing_operations
7.5.3.9
ibmmarketing_operations
8.0.0.0
ibmmarketing_operations
8.0.0.2
ibmmarketing_operations
8.1.0.0
ibmmarketing_operations
8.1.0.6
ibmmarketing_operations
8.1.0.7
ibmmarketing_operations
8.1.1.0
ibmmarketing_operations
8.1.1.4
ibmmarketing_operations
8.2.0.0
ibmmarketing_operations
8.2.0.5
ibmmarketing_operations
8.2.0.6
ibmmarketing_operations
8.2.0.7
ibmmarketing_operations
8.2.0.8
ibmmarketing_operations
8.2.0.9
ibmmarketing_operations
8.2.0.10
ibmmarketing_operations
8.2.0.11
ibmmarketing_operations
8.2.0.12
ibmmarketing_operations
8.2.0.13
ibmmarketing_operations
8.5.0.0
ibmmarketing_operations
8.5.0.1
ibmmarketing_operations
8.5.0.2
ibmmarketing_operations
8.5.0.3
ibmmarketing_operations
8.5.0.4
ibmmarketing_operations
8.5.0.5
ibmmarketing_operations
8.5.0.6
ibmmarketing_operations
8.5.0.7
ibmmarketing_operations
8.6.0.0
ibmmarketing_operations
8.6.0.2
ibmmarketing_operations
8.6.0.3
ibmmarketing_operations
8.6.0.4
ibmmarketing_operations
8.6.0.5
ibmmarketing_operations
8.6.0.6
ibmmarketing_operations
8.6.0.7
ibmmarketing_operations
9.0.0.0
ibmmarketing_operations
9.0.0.1
ibmmarketing_operations
9.0.0.2
ibmmarketing_operations
9.0.0.3
ibmmarketing_operations
9.0.0.4
ibmmarketing_operations
9.1.0.0
ibmmarketing_operations
9.1.0.2
ibmmarketing_operations
9.1.0.3
ibmmarketing_operations
9.1.0.4
ibmmarketing_operations
9.1.1.0
ibmmarketing_operations
9.1.1.1
𝑥
= Vulnerable software versions