CVE-2014-0948

high

Description

Unspecified vulnerability in IBM Rational Software Architect Design Manager and Rational Rhapsody Design Manager 3.x and 4.x before 4.0.7 allows remote authenticated users to execute arbitrary code via a crafted ZIP archive.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/92621

http://www-01.ibm.com/support/docview.wss?uid=swg21678323

Details

Source: Mitre, NVD

Published: 2014-07-30

Updated: 2017-08-29

Risk Information

CVSS v2

Base Score: 6

Vector: CVSS2#AV:N/AC:M/Au:S/C:P/I:P/A:P

Severity: Medium

CVSS v3

Base Score: 8.8

Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity: High