MEDIUM · 4.0

CVE-2014-8896

The Collaboration Server in IBM InfoSphere Master Data Management Server for Product Information Management 9.x through 9.1 and InfoSphere Master Data Management - Collaborative Edition 10.x through 1...

Vulnerability Description

The Collaboration Server in IBM InfoSphere Master Data Management Server for Product Information Management 9.x through 9.1 and InfoSphere Master Data Management - Collaborative Edition 10.x through 10.1, 11.0 before FP7, and 11.3 and 11.4 before 11.4 FP1 allows remote authenticated users to modify the administrator's credentials and consequently gain privileges via unspecified vectors.

CVSS Score

4.0

MEDIUM

AV:N/AC:L/Au:S/C:N/I:P/A:N
Confidentiality
NONE
Integrity
PARTIAL
Availability
NONE

Affected Products

VendorProductVersions
IbmInfosphere Master Data Management Server For Product Information Management9.0.0
IbmInfosphere Master Data Management Collaborative Server10.0.0

Related Weaknesses (CWE)

References

FAQ

What is CVE-2014-8896?

CVE-2014-8896 is a vulnerability with a CVSS score of 4.0 (MEDIUM). The Collaboration Server in IBM InfoSphere Master Data Management Server for Product Information Management 9.x through 9.1 and InfoSphere Master Data Management - Collaborative Edition 10.x through 1...

How severe is CVE-2014-8896?

CVE-2014-8896 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2014-8896?

Check the references section above for vendor advisories and patch information. Affected products include: Ibm Infosphere Master Data Management Server For Product Information Management, Ibm Infosphere Master Data Management Collaborative Server.