HIGH · 10.0

CVE-2011-0496

Unspecified vulnerability in Sybase EAServer 5.x and 6.x before 6.3 ESD#2, as used in Appeon, Replication Server Messaging Edition (RSME), and WorkSpace, allows remote attackers to install arbitrary w...

Vulnerability Description

Unspecified vulnerability in Sybase EAServer 5.x and 6.x before 6.3 ESD#2, as used in Appeon, Replication Server Messaging Edition (RSME), and WorkSpace, allows remote attackers to install arbitrary web services and execute arbitrary code, related to a "design vulnerability."

CVSS Score

10.0

HIGH

AV:N/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
SybaseAppeon For Powerbuilder2.5
SybaseEaserver5.0
SybaseReplication ServerAll versions
SybaseSybase WorkspaceAll versions

References

FAQ

What is CVE-2011-0496?

CVE-2011-0496 is a vulnerability with a CVSS score of 10.0 (HIGH). Unspecified vulnerability in Sybase EAServer 5.x and 6.x before 6.3 ESD#2, as used in Appeon, Replication Server Messaging Edition (RSME), and WorkSpace, allows remote attackers to install arbitrary w...

How severe is CVE-2011-0496?

CVE-2011-0496 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2011-0496?

Check the references section above for vendor advisories and patch information. Affected products include: Sybase Appeon For Powerbuilder, Sybase Easerver, Sybase Replication Server, Sybase Sybase Workspace.