René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

96 lines
2.8 KiB
JSON

{
"id": "CVE-2012-5940",
"sourceIdentifier": "psirt@us.ibm.com",
"published": "2013-02-20T12:09:22.287",
"lastModified": "2017-08-29T01:32:52.277",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "The WebAdmin application 6.0.5, 6.0.8, and 7.0 before P2 in IBM Netezza, when SSL is not enabled, allows remote attackers to discover credentials by sniffing the network during the authentication process."
},
{
"lang": "es",
"value": "La aplicaci\u00f3n WebAdmin v6.0.5, v6.0.8, y v7.0 antes de P2 en IBM Netezza, cuando el SSL no est\u00e1 habilitado, permite a atacantes remotos descubrir las credenciales por la captura de tr\u00e1fico (sniffing) de la red durante el proceso de autenticaci\u00f3n."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N",
"accessVector": "NETWORK",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "NONE",
"availabilityImpact": "NONE",
"baseScore": 4.3
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 8.6,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-287"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:h:ibm:netezza:6.0.5:*:*:*:*:*:*:*",
"matchCriteriaId": "3A06CF8D-EC1B-4AA1-AA1D-DB0CE1CC91BF"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:h:ibm:netezza:6.0.8:*:*:*:*:*:*:*",
"matchCriteriaId": "84B808D4-9613-4686-9982-95F663C8BEA9"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:h:ibm:netezza:7.0:*:*:*:*:*:*:*",
"matchCriteriaId": "5853E48B-3367-4C5D-B0F3-F039B20B372B"
}
]
}
]
}
],
"references": [
{
"url": "http://www-01.ibm.com/support/docview.wss?uid=swg21624568",
"source": "psirt@us.ibm.com",
"tags": [
"Vendor Advisory"
]
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/80535",
"source": "psirt@us.ibm.com"
}
]
}