← Back

CVE-2014-0936

nvd nist
Published: Jun 8, 2014Modified: May 6, 2026

JSON object

Loading...
4.3
Vector
AV:A/AC:H/Au:N/C:P/I:P/A:P
Exploitability: 3.2 / Impact: 6.4
Source: NVD

Description

IBM Security AppScan Source 8.0 through 9.0, when the publish-assessment permission is not properly restricted for the configured database server, transmits cleartext assessment data, which allows remote attackers to obtain sensitive information by sniffing the network.

Affected (6)

1 product
Security Appscan Source
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 8.0
Version 8.5
Version 8.6
Version 8.7
Version 8.8
Version 9.0

References (4)

Source: psirt@us.ibm.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.