René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

145 lines
5.0 KiB
JSON

{
"id": "CVE-2015-4990",
"sourceIdentifier": "psirt@us.ibm.com",
"published": "2016-01-02T05:59:01.580",
"lastModified": "2016-01-06T18:58:35.117",
"vulnStatus": "Analyzed",
"descriptions": [
{
"lang": "en",
"value": "The portal in IBM Tealeaf Customer Experience before 8.7.1.8818, 8.8 before 8.8.0.9026, 9.0.0, 9.0.0A, 9.0.1 before 9.0.1.1083, 9.0.1A before 9.0.1.5073, 9.0.2 before 9.0.2.1095, and 9.0.2A before 9.0.2.5144 allows local users to discover credentials by leveraging privileges during an unspecified connection type."
},
{
"lang": "es",
"value": "El portal en IBM Tealeaf Customer Experience en versiones anteriores a 8.7.1.8818, 8.8 en versiones anteriores a 8.8.0.9026, 9.0.0, 9.0.0A, 9.0.1 en versiones anteriores a 9.0.1.1083, 9.0.1A en versiones anteriores a 9.0.1.5073, 9.0.2 en versiones anteriores a 9.0.2.1095 y 9.0.2A en versiones anteriores a 9.0.2.5144 permite a usuarios locales descubrir credenciales aprovechando privilegios durante un tipo de conexi\u00f3n no especificada."
}
],
"metrics": {
"cvssMetricV30": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "3.0",
"vectorString": "CVSS:3.0/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N",
"attackVector": "LOCAL",
"attackComplexity": "HIGH",
"privilegesRequired": "HIGH",
"userInteraction": "REQUIRED",
"scope": "UNCHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "NONE",
"availabilityImpact": "NONE",
"baseScore": 4.0,
"baseSeverity": "MEDIUM"
},
"exploitabilityScore": 0.3,
"impactScore": 3.6
}
],
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:M/Au:N/C:P/I:N/A:N",
"accessVector": "LOCAL",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "NONE",
"availabilityImpact": "NONE",
"baseScore": 1.9
},
"baseSeverity": "LOW",
"exploitabilityScore": 3.4,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": true
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-200"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:ibm:tealeaf_customer_experience:*:*:*:*:*:*:*:*",
"versionEndIncluding": "8.6",
"matchCriteriaId": "06154DF2-11C1-4D1E-8FD2-30258CCDFA38"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:ibm:tealeaf_customer_experience:8.7:*:*:*:*:*:*:*",
"matchCriteriaId": "41B6A77E-1686-44A6-B1E4-AC63A0466AE2"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:ibm:tealeaf_customer_experience:8.8:*:*:*:*:*:*:*",
"matchCriteriaId": "FBAC9796-BA52-48AF-9326-3C2343BE2342"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.0:*:*:*:*:*:*:*",
"matchCriteriaId": "6D705DD1-8F24-49B4-8D05-F0403A625016"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.0a:*:*:*:*:*:*:*",
"matchCriteriaId": "4A2BAB44-B859-4209-BAFD-088E9583F31B"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.1:*:*:*:*:*:*:*",
"matchCriteriaId": "7D66B990-2034-46D9-AF8D-DE69B3161F38"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.1a:*:*:*:*:*:*:*",
"matchCriteriaId": "50EC1311-629F-401B-9AE3-8ECDE0CBF330"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.2:*:*:*:*:*:*:*",
"matchCriteriaId": "2AFA47D5-AC5B-4A1B-83A6-EE5D49ECE489"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.2a:*:*:*:*:*:*:*",
"matchCriteriaId": "F5FE2E49-88CF-4D61-8097-B3146A47BAED"
}
]
}
]
}
],
"references": [
{
"url": "http://www-01.ibm.com/support/docview.wss?uid=swg21969739",
"source": "psirt@us.ibm.com",
"tags": [
"Vendor Advisory"
]
}
]
}