Vulnerability Details CVE-2015-4989
The portal in IBM Tealeaf Customer Experience before 8.7.1.8814, 8.8 before 8.8.0.9026, 9.0.0, 9.0.0A, 9.0.1 before 9.0.1.1083, 9.0.1A before 9.0.1.5073, 9.0.2 before 9.0.2.1095, and 9.0.2A before 9.0.2.5144 allows remote attackers to read arbitrary charts by specifying an internal chart name.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 43.3%
CVSS Severity
CVSS v3 Score 3.7
CVSS v2 Score 5.0
Products affected by CVE-2015-4989
-
cpe:2.3:a:ibm:tealeaf_customer_experience:8.0
-
cpe:2.3:a:ibm:tealeaf_customer_experience:8.6
-
cpe:2.3:a:ibm:tealeaf_customer_experience:8.7
-
cpe:2.3:a:ibm:tealeaf_customer_experience:8.8
-
cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.0
-
cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.0a
-
cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.1
-
cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.1a
-
cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.2
-
cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.2a