7.5
CVSSv3

CVE-2014-5138

Published: 14/01/2020 Updated: 21/01/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Innovative Interfaces Sierra Library Services Platform 1.2_3 does not properly handle query strings with multiple instances of the same parameter, which allows remote malicious users to bypass parameter validation via unspecified vectors, possibly related to the Webpac Pro submodule.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

iii sierra 1.2_3