Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-26px-prvq-fgpx

Опубликовано: 23 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.8

Описание

IBM Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2, 4.2.1, 5.0, and 5.1

IBM Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2, 4.2.1, 5.0, and 5.1

EPSS

Процентиль: 9%
0.00194
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 4.8
nvd
3 месяца назад

IBM Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2, 4.2.1, 5.0, and 5.1 enables privilege escalation, allowing unauthorized users to perform administrative operations after being demoted. Attackers could access sensitive data, modify system configurations, or change permissions for other users. The issue undermines administrative controls and could lead to data breaches, system compromise, and loss of trust in the application's security mechanisms.

EPSS

Процентиль: 9%
0.00194
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-269