3.5
CVSSv2

CVE-2014-6148

Published: 31/10/2014 Updated: 08/09/2017
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:P/I:N/A:N

Vulnerability Summary

IBM Tivoli Application Dependency Discovery Manager (TADDM) 7.2.0.0 up to and including 7.2.0.10, 7.2.1.0 up to and including 7.2.1.6, and 7.2.2.0 up to and including 7.2.2.2 does not require TADDM authentication for rptdesign downloads, which allows remote authenticated users to obtain sensitive database information via a crafted URL.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm tivoli application dependency discovery manager 7.2.0.5

ibm tivoli application dependency discovery manager 7.2.0.6

ibm tivoli application dependency discovery manager 7.2.1.3

ibm tivoli application dependency discovery manager 7.2.1.4

ibm tivoli application dependency discovery manager 7.2.0.2

ibm tivoli application dependency discovery manager 7.2.0.3

ibm tivoli application dependency discovery manager 7.2.0.4

ibm tivoli application dependency discovery manager 7.2.1.1

ibm tivoli application dependency discovery manager 7.2.1.2

ibm tivoli application dependency discovery manager 7.2.2.2

ibm tivoli application dependency discovery manager 7.2.0.0

ibm tivoli application dependency discovery manager 7.2.0.7

ibm tivoli application dependency discovery manager 7.2.0.8

ibm tivoli application dependency discovery manager 7.2.1.5

ibm tivoli application dependency discovery manager 7.2.1.6

ibm tivoli application dependency discovery manager 7.2.0.1

ibm tivoli application dependency discovery manager 7.2.0.10

ibm tivoli application dependency discovery manager 7.2.0.9

ibm tivoli application dependency discovery manager 7.2.1

ibm tivoli application dependency discovery manager 7.2.2

ibm tivoli application dependency discovery manager 7.2.2.1