CVE-2015-4990

The portal in IBM Tealeaf Customer Experience before 8.7.1.8818, 8.8 before 8.8.0.9026, 9.0.0, 9.0.0A, 9.0.1 before 9.0.1.1083, 9.0.1A before 9.0.1.5073, 9.0.2 before 9.0.2.1095, and 9.0.2A before 9.0.2.5144 allows local users to discover credentials by leveraging privileges during an unspecified connection type.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4 MEDIUM
LOCAL
HIGH
HIGH
CVSS:3.0/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N
ibmCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 17%
VendorProductVersion
ibmtealeaf_customer_experience
𝑥
≤ 8.6
ibmtealeaf_customer_experience
8.7
ibmtealeaf_customer_experience
8.8
ibmtealeaf_customer_experience
9.0.0
ibmtealeaf_customer_experience
9.0.0a:a
ibmtealeaf_customer_experience
9.0.1
ibmtealeaf_customer_experience
9.0.1a:a
ibmtealeaf_customer_experience
9.0.2
ibmtealeaf_customer_experience
9.0.2a:a
𝑥
= Vulnerable software versions