CVE-2014-6183

IBM Security Network Protection 5.1-5.1.2.1 and 5.2-5.3 - Authenticated Remote Code Execution

Title source: llm
STIX 2.1

Description

IBM Security Network Protection 5.1 before 5.1.0.0 FP13, 5.1.1 before 5.1.1.0 FP8, 5.1.2 before 5.1.2.0 FP9, 5.1.2.1 before FP5, 5.2 before 5.2.0.0 FP5, and 5.3 before 5.3.0.0 FP1 on XGS devices allows remote authenticated users to execute arbitrary commands via unspecified vectors.

References (2)

Core 2
Core References
Various Sources x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21690823
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/98519

Scores

EPSS 0.0179
EPSS Percentile 76.0%

Details

CWE
CWE-399
Status published
Products (10)
ibm/security_network_protection_firmware 5.1
ibm/security_network_protection_firmware 5.1.0.0 fp0006 (7 CPE variants)
ibm/security_network_protection_firmware 5.1.1
ibm/security_network_protection_firmware 5.1.1.0 fp0001 (7 CPE variants)
ibm/security_network_protection_firmware 5.1.2.0 fp0002 (7 CPE variants)
ibm/security_network_protection_firmware 5.1.2.1 fp0001 (3 CPE variants)
ibm/security_network_protection_firmware 5.2.0.0 fp0001 (4 CPE variants)
ibm/security_network_protection_firmware 5.3
ibm/security_network_protection_xgs_5000
ibm/security_network_protection_xgs_5100
Published Nov 23, 2014
Tracked Since Feb 18, 2026