CVE-2014-0936
IBM Security AppScan Source 8.0 through 9.0, when the publish-assessment permission is not properly restricted for the configured database server, transmits cleartext assessment data, which allows remote attackers to obtain sensitive information by sniffing the network.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0024 (0.2%)
Percentile: 46.6%
EPSS: 2026-05-06
Affects
ibm:security_appscan_sourceTechnical description
IBM Security AppScan Source 8.0 through 9.0, when the publish-assessment permission is not properly restricted for the configured database server, transmits cleartext assessment data, which allows remote attackers to obtain sensitive information by sniffing the network.
Published: 6/8/2014, 11:55:02 PM
Last modified: 5/6/2026, 10:30:45 PM