Skip to content

CVE-2014-0936

IBM Security AppScan Source 8.0 through 9.0, when the publish-assessment permission is not properly restricted for the configured database server, transmits cleartext assessment data, which allows remote attackers to obtain sensitive information by sniffing the network.

View on NVD

Severity

N/A

EPSS

Probability of exploitation (next 30 days): 0.0024 (0.2%)
Percentile: 46.6%
EPSS: 2026-05-06

Affects

ibm:security_appscan_source

Technical description

IBM Security AppScan Source 8.0 through 9.0, when the publish-assessment permission is not properly restricted for the configured database server, transmits cleartext assessment data, which allows remote attackers to obtain sensitive information by sniffing the network.

Published: 6/8/2014, 11:55:02 PM
Last modified: 5/6/2026, 10:30:45 PM

References

HomeEventsBlogResourcesTeam