6.5
CVSSv2

CVE-2017-1440

Published: 30/08/2017 Updated: 03/10/2019
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

IBM Emptoris Services Procurement 10.0.0.5 could allow a remote malicious user to include arbitrary files. A remote attacker could send a specially-crafted URL to specify a malicious file from a remote system, which could allow the malicious user to execute arbitrary code on the vulnerable Web server. IBM X-Force ID: 128105.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm emptoris services procurement 10.0.0.1

ibm emptoris services procurement 10.0.0.2

ibm emptoris services procurement 10.0.0.0

ibm emptoris services procurement 10.0.0.3

ibm emptoris services procurement 10.0.0.5

ibm emptoris services procurement 10.0.0.4

ibm emptoris services procurement 10.1.1.0