Vulnerability Details CVE-2015-5042
IBM Emptoris Contract Management 9.5.0.x before 9.5.0.6 iFix15, 10.0.0.x and 10.0.1.x before 10.0.1.5 iFix5, 10.0.2.x before 10.0.2.7 iFix4, and 10.0.4.x before 10.0.4.0 iFix3 allows remote attackers to execute arbitrary code by including a crafted Flash file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 69.2%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2015-5042
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.0.0
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.0.1
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.1.0
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.1.1
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.1.2
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.1.3
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.1.4
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.1.5
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.2.0
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.2.1
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.2.2
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.2.3
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.2.4
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.2.5
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.2.6
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.2.7
-
cpe:2.3:a:ibm:emptoris_contract_management:10.0.4.0
-
cpe:2.3:a:ibm:emptoris_contract_management:9.5.0.0
-
cpe:2.3:a:ibm:emptoris_contract_management:9.5.0.1
-
cpe:2.3:a:ibm:emptoris_contract_management:9.5.0.2
-
cpe:2.3:a:ibm:emptoris_contract_management:9.5.0.3
-
cpe:2.3:a:ibm:emptoris_contract_management:9.5.0.4
-
cpe:2.3:a:ibm:emptoris_contract_management:9.5.0.5
-
cpe:2.3:a:ibm:emptoris_contract_management:9.5.0.6