Vulnerability Description
Unspecified vulnerability in IBM Rational Software Architect Design Manager and Rational Rhapsody Design Manager 3.x and 4.x before 4.0.7 allows remote authenticated users to execute arbitrary code via a crafted ZIP archive.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Rhapsody Design Manager | 3.0.0 |
| Ibm | Rational Software Architect Design Manager | 3.0.0 |
References
- http://www-01.ibm.com/support/docview.wss?uid=swg21678323Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/92621
- http://www-01.ibm.com/support/docview.wss?uid=swg21678323Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/92621
FAQ
What is CVE-2014-0948?
CVE-2014-0948 is a vulnerability with a CVSS score of 6.0 (MEDIUM). Unspecified vulnerability in IBM Rational Software Architect Design Manager and Rational Rhapsody Design Manager 3.x and 4.x before 4.0.7 allows remote authenticated users to execute arbitrary code vi...
How severe is CVE-2014-0948?
CVE-2014-0948 has been rated MEDIUM with a CVSS base score of 6.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2014-0948?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Rhapsody Design Manager, Ibm Rational Software Architect Design Manager.