IBM Security AppScan Enterprise 8.5 before 8.5 IFix 002, 8.6 before 8.6 IFix 004, 8.7 before 8.7 IFix 004, 8.8 before 8.8 iFix 003, 9.0 before 9.0.0.1 iFix 003, and 9.0.1 before 9.0.1 iFix 001 allows remote authenticated users to write to arbitrary folders, and consequently execute arbitrary commands, via a modified argument.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2014-12-22 18:59
Updated : 2017-09-07 18:29
NVD link : CVE-2014-6122
Mitre link : CVE-2014-6122
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
ibm
- security_appscan_source
- security_appscan