Free and open-source vulnerability scanner
Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.
Install NowAvailable for macOS, Windows, and Linux
CVE-2015-0101
CVE information
Published
Last Modified
CVSSv2.0 Severity
CVSSv3.1 Severity
Impact Analysis
Description
Cross-site scripting (XSS) vulnerability in IBM Business Process Manager Standard 7.5.x before 7.5, 8.0.x before 8.0.1, 8.5.x before 8.5.5; IBM Business Process Manager Express 7.5.x before 7.5, 8.0.x before 8.0.1, 8.5.x before 8.5.5; and IBM Business Process Manager Advanced 7.5.x before 7.5, 8.0.x before 8.0.1, 8.5.x before 8.5.5..
CVSSv2.0 Score
- Severity
- Medium
- Base Score
- 4.3/10
- Exploit Score
- 8.6/10
- Access Vector
- Network
- Access Complexity
- Medium
- Authentication Required
- None
- Impact Score
- 2.9/10
- Confidentiality Impact
- None
- Availability Impact
- None
- Integrity Impact
- Partial
CVSSv3.1 Score
- Severity
- Medium
- Base Score
- 6.1/10
- Exploit Score
- 2.8/10
- Access Vector
- Network
- Access Complexity
- Low
- Privileges Required
- None
- Impact Score
- 2.7/10
- Confidentiality Impact
- Low
- Availability Impact
- None
- Integrity Impact
- Low
- Scope
- Changed
- User Interaction
- Required
Products Affected
CPE | Affected | Vulnerable | Excluding | Edit |
---|---|---|---|---|
cpe:2.3:a:ibm:business_process_manager:8.5.5:*:*:*:standard: |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.0.1.2:*:*:*:standar |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:7.5.1:*:*:*:standard: |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.5:*:*:*:standard:*: |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:7.5:*:*:*:standard:*: |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:7.5.1.1:*:*:*:standar |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.0.1:*:*:*:standard: |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.5.0.1:*:*:*:standar |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:7.5.0.1:*:*:*:standar |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.0.1.3:*:*:*:standar |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:7.5.1.2:*:*:*:standar |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.0.1.1:*:*:*:standar |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.0:*:*:*:standard:*: |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.5:*:*:*:express:*:* |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.0.1.2:*:*:*:express |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.0.1.3:*:*:*:express |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:7.5.1:*:*:*:express:* |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:7.5.1.1:*:*:*:express |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:7.5.0.1:*:*:*:express |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:7.5:*:*:*:express:*:* |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.5.0.1:*:*:*:express |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.0:*:*:*:express:*:* |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:7.5.1.2:*:*:*:express |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.5.5:*:*:*:express:* |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.0.1.1:*:*:*:express |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.0.1:*:*:*:express:* |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:7.5:*:*:*:advanced:*: |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.5.0.1:*:*:*:advance |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.5:*:*:*:advanced:*: |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.0.1.3:*:*:*:advance |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.5.5:*:*:*:advanced: |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.0.1:*:*:*:advanced: |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:7.5.1.2:*:*:*:advance |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:7.5.0.1:*:*:*:advance |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:7.5.1.1:*:*:*:advance |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.0.1.2:*:*:*:advance |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:7.5.1:*:*:*:advanced: |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.0.1.1:*:*:*:advance |
Yes
|
- | - | |
cpe:2.3:a:ibm:business_process_manager:8.0:*:*:*:advanced:*: |
Yes
|
- | - |