Show plain JSON{"id": "CVE-2015-8098", "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 10.0, "accessVector": "NETWORK", "vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C", "authentication": "NONE", "integrityImpact": "COMPLETE", "accessComplexity": "LOW", "availabilityImpact": "COMPLETE", "confidentialityImpact": "COMPLETE"}, "acInsufInfo": true, "impactScore": 10.0, "baseSeverity": "HIGH", "obtainAllPrivilege": false, "exploitabilityScore": 10.0, "obtainUserPrivilege": false, "obtainOtherPrivilege": false}], "cvssMetricV30": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.0", "baseScore": 9.8, "attackVector": "NETWORK", "baseSeverity": "CRITICAL", "vectorString": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H", "integrityImpact": "HIGH", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "HIGH", "privilegesRequired": "NONE", "confidentialityImpact": "HIGH"}, "impactScore": 5.9, "exploitabilityScore": 3.9}]}, "published": "2016-01-12T19:59:08.003", "references": [{"url": "http://www.securitytracker.com/id/1034609", "source": "cve@mitre.org"}, {"url": "https://support.f5.com/kb/en-us/solutions/public/k/43/sol43552605.html", "tags": ["Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "http://www.securitytracker.com/id/1034609", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://support.f5.com/kb/en-us/solutions/public/k/43/sol43552605.html", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Modified", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-119"}]}], "descriptions": [{"lang": "en", "value": "F5 BIG-IP APM 11.4.1 before 11.4.1 HF9, 11.5.x before 11.5.3, and 11.6.0 before 11.6.0 HF4 allow remote attackers to cause a denial of service or execute arbitrary code via unspecified vectors related to processing a Citrix Remote Desktop connection through a virtual server configured with a remote desktop profile, aka an \"Out-of-bounds memory vulnerability.\""}, {"lang": "es", "value": "F5 BIG-IP APM 11.4.1 en versiones anteriores a 11.4.1 HF9, 11.5.x en versiones anteriores a 11.5.3 y 11.6.0 en versiones anteriores a 11.6.0 HF4 permite a atacantes remotos causar una denegaci\u00f3n de servicio o ejecutar c\u00f3digo arbitrario a trav\u00e9s de vectores no especificados en relaci\u00f3n con el procesado de una conexi\u00f3n a Citrix Remote Desktop a trav\u00e9s de un servidor virtual configurado con un perfil de escritorio remoto, tambi\u00e9n conocido como una \"Vulnerabilidad de memoria fuera de limites\"."}], "lastModified": "2024-11-21T02:38:00.730", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:f5:big-ip_access_policy_manager:11.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "002333F5-2864-434F-AC94-9C644098F95C"}, {"criteria": "cpe:2.3:a:f5:big-ip_access_policy_manager:11.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FB630A86-FB84-4199-9E4D-38EB620806CB"}, {"criteria": "cpe:2.3:a:f5:big-ip_access_policy_manager:11.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ABF47456-CCA0-4817-9AEF-631DC152174E"}, {"criteria": "cpe:2.3:a:f5:big-ip_access_policy_manager:11.4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FB5F9107-549C-40EF-B355-C7E93A979CDD"}, {"criteria": "cpe:2.3:a:f5:big-ip_access_policy_manager:11.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1C0312FC-8178-46DE-B4EE-00F2895073BA"}, {"criteria": "cpe:2.3:a:f5:big-ip_access_policy_manager:11.5.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BC6C5628-14FF-4D75-B62E-D4B2707C1E3D"}, {"criteria": "cpe:2.3:a:f5:big-ip_access_policy_manager:11.6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CFA77C6B-72DB-4D57-87CF-11F2C7EDB828"}], "operator": "OR"}]}], "sourceIdentifier": "cve@mitre.org"}