CVE-2015-4990

EUVD-2015-5007
The portal in IBM Tealeaf Customer Experience before 8.7.1.8818, 8.8 before 8.8.0.9026, 9.0.0, 9.0.0A, 9.0.1 before 9.0.1.1083, 9.0.1A before 9.0.1.5073, 9.0.2 before 9.0.2.1095, and 9.0.2A before 9.0.2.5144 allows local users to discover credentials by leveraging privileges during an unspecified connection type.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4 MEDIUM
LOCAL
HIGH
HIGH
CVSS:3.0/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 17%
Affected Products (NVD)
VendorProductVersion
ibmtealeaf_customer_experience
𝑥
≤ 8.6
ibmtealeaf_customer_experience
8.7
ibmtealeaf_customer_experience
8.8
ibmtealeaf_customer_experience
9.0.0
ibmtealeaf_customer_experience
9.0.0a:a
ibmtealeaf_customer_experience
9.0.1
ibmtealeaf_customer_experience
9.0.1a:a
ibmtealeaf_customer_experience
9.0.2
ibmtealeaf_customer_experience
9.0.2a:a
𝑥
= Vulnerable software versions