CVE-2014-0904
The update process in IBM Security AppScan Standard 7.9 through 8.8 does not require integrity checks of downloaded files, which allows remote attackers to execute arbitrary code via a crafted file.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0381 (3.8%)
Percentile: 88.1%
EPSS: 2026-05-06
Affects
ibm:security_appscanTechnical description
The update process in IBM Security AppScan Standard 7.9 through 8.8 does not require integrity checks of downloaded files, which allows remote attackers to execute arbitrary code via a crafted file.
Published: 3/26/2014, 10:55:05 AM
Last modified: 5/6/2026, 10:30:45 PM