// For flags

CVE-2014-4619

 

Severity Score

9.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

EMC RSA Identity Management and Governance (IMG) 6.5.x before 6.5.1 P11, 6.5.2 before P02HF01, and 6.8.x before 6.8.1 P07, when Novell Identity Manager (aka NovellIM) is used, allows remote attackers to bypass authentication via an arbitrary valid username.

EMC RSA Identity Management and Governance (IMG) 6.5.x en versiones anteriores a 6.5.1 P11, 6.5.2 en versiones anteriores a P02HF01 y 6.8.x en versiones anteriores a 6.8.1 P07, cuando se utiliza Novell Identity Manager (también conocido como NovellIM), permite a atacantes remotos eludir la autenticación a través de un nombre de usuario válido arbitrario.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2014-06-24 CVE Reserved
  • 2014-08-26 CVE Published
  • 2024-04-09 EPSS Updated
  • 2024-08-06 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-287: Improper Authentication
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Emc
Search vendor "Emc"
Rsa Identity Management And Governance
Search vendor "Emc" for product "Rsa Identity Management And Governance"
6.5.0
Search vendor "Emc" for product "Rsa Identity Management And Governance" and version "6.5.0"
-
Affected
Emc
Search vendor "Emc"
Rsa Identity Management And Governance
Search vendor "Emc" for product "Rsa Identity Management And Governance"
6.5.1
Search vendor "Emc" for product "Rsa Identity Management And Governance" and version "6.5.1"
-
Affected
Emc
Search vendor "Emc"
Rsa Identity Management And Governance
Search vendor "Emc" for product "Rsa Identity Management And Governance"
6.5.2
Search vendor "Emc" for product "Rsa Identity Management And Governance" and version "6.5.2"
-
Affected
Emc
Search vendor "Emc"
Rsa Identity Management And Governance
Search vendor "Emc" for product "Rsa Identity Management And Governance"
6.8.0
Search vendor "Emc" for product "Rsa Identity Management And Governance" and version "6.8.0"
-
Affected
Emc
Search vendor "Emc"
Rsa Identity Management And Governance
Search vendor "Emc" for product "Rsa Identity Management And Governance"
6.8.1
Search vendor "Emc" for product "Rsa Identity Management And Governance" and version "6.8.1"
-
Affected