CVE-2014-2505
Estado: ModificadaMedia (5.4)—
EMC RSA Archer GRC Platform 5.x before 5.5 SP1 allows remote attackers to trigger the download of arbitrary code, and consequently change the product's functionality, via unspecified vectors.
CVSS
- Versión: 2.0
- Vector: AV:A/AC:M/Au:N/C:P/I:P/A:P
- Puntuación base: 5.4
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.71%
- Percentil entre todas las CVEs puntuadas: 52
- Fecha de la puntuación: 4/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
CWE
- NVD-CWE-noinfo
Referencias
- http://archives.neohapsis.com/archives/bugtraq/2014-08/0097.html
- http://www.securityfocus.com/bid/69290
- http://www.securitytracker.com/id/1030738
- https://exchange.xforce.ibmcloud.com/vulnerabilities/95360
- http://archives.neohapsis.com/archives/bugtraq/2014-08/0097.html
- http://www.securityfocus.com/bid/69290
- http://www.securitytracker.com/id/1030738
- https://exchange.xforce.ibmcloud.com/vulnerabilities/95360
JSON original (NVD)
Mostrar
{
"id": "CVE-2014-2505",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 5.4,
"accessVector": "ADJACENT_NETWORK",
"vectorString": "AV:A/AC:M/Au:N/C:P/I:P/A:P",
"authentication": "NONE",
"integrityImpact": "PARTIAL",
"accessComplexity": "MEDIUM",
"availabilityImpact": "PARTIAL",
"confidentialityImpact": "PARTIAL"
},
"acInsufInfo": false,
"impactScore": 6.4,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 5.5,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "security_alert@emc.com",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2014-08-20T11:17:13.720",
"references": [
{
"url": "http://archives.neohapsis.com/archives/bugtraq/2014-08/0097.html",
"source": "security_alert@emc.com"
},
{
"url": "http://www.securityfocus.com/bid/69290",
"source": "security_alert@emc.com"
},
{
"url": "http://www.securitytracker.com/id/1030738",
"source": "security_alert@emc.com"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/95360",
"source": "security_alert@emc.com"
},
{
"url": "http://archives.neohapsis.com/archives/bugtraq/2014-08/0097.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/69290",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securitytracker.com/id/1030738",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/95360",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-noinfo"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "EMC RSA Archer GRC Platform 5.x before 5.5 SP1 allows remote attackers to trigger the download of arbitrary code, and consequently change the product's functionality, via unspecified vectors."
},
{
"lang": "es",
"value": "EMC RSA Archer GRC Platform 5.x anterior a 5.5 SP1 permite a atacantes remotos provocar la descarga de código arbitrario, y como consecuencia cambiar la funcionalidad del producto, a través de vectores no especificados."
}
],
"lastModified": "2026-06-17T00:06:43.460",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:emc:rsa_archer_egrc:5.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "CF1C8BE8-3091-4E1B-AA6F-F05DD4EBEE0F"
},
{
"criteria": "cpe:2.3:a:emc:rsa_archer_egrc:5.4:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "DFDE64AE-F24C-474E-B89E-952D10621F7A"
},
{
"criteria": "cpe:2.3:a:emc:rsa_archer_egrc:5.4:sp1:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "CD7F0766-FB33-4315-B02C-D92AE9B0F900"
},
{
"criteria": "cpe:2.3:a:emc:rsa_archer_egrc:5.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C3DB8B9F-A96F-4B38-B7B5-4D923FCFDBAE"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "security_alert@emc.com"
}