ID

VAR-201507-0712


TITLE

Tableau has multiple vulnerabilities

Trust: 0.6

sources: CNVD: CNVD-2015-04301

DESCRIPTION

Tableau Server is enterprise intelligence software that provides browser-based analysis that anyone can learn and use. Tableau Server has sensitive information disclosure and permission bypass loopholes, allowing remote attackers to use vulnerability locks to manage user operations, obtain sensitive information, and bypass restricted access to the data of privileged publishers.

Trust: 0.6

sources: CNVD: CNVD-2015-04301

IOT TAXONOMY

category:['IoT']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2015-04301

AFFECTED PRODUCTS

vendor:tableaumodel:serverscope:eqversion:8.0

Trust: 0.6

vendor:tableaumodel:serverscope:eqversion:8.1-8.1.19

Trust: 0.6

vendor:tableaumodel:serverscope:eqversion:8.2-8.2.11

Trust: 0.6

vendor:tableaumodel:serverscope:eqversion:8.3-8.3.6

Trust: 0.6

vendor:tableaumodel:serverscope:eqversion:9.0-9.0.2

Trust: 0.6

sources: CNVD: CNVD-2015-04301

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2015-04301
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2015-04301
severity: MEDIUM
baseScore: 5.4
vectorString: AV:N/AC:M/AU:M/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: MULTIPLE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 5.5
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2015-04301

PATCH

title:Patch for Tableau has multiple vulnerabilitiesurl:https://www.cnvd.org.cn/patchinfo/show/60362

Trust: 0.6

sources: CNVD: CNVD-2015-04301

EXTERNAL IDS

db:CNVDid:CNVD-2015-04301

Trust: 0.6

sources: CNVD: CNVD-2015-04301

SOURCES

db:CNVDid:CNVD-2015-04301

LAST UPDATE DATE

2022-05-04T09:18:03.671000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2015-04301date:2015-07-07T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2015-04301date:2015-07-07T00:00:00