Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8jmw-3m3p-q6p3

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM Spectrum Protect Plus 10.1.0 through 10.1.7 uses Cross-Origin Resource Sharing (CORS) which could allow an attacker to carry out privileged actions and retrieve sensitive information as the domain name is not being limited to only trusted domains. IBM X-Force ID: 196344.

IBM Spectrum Protect Plus 10.1.0 through 10.1.7 uses Cross-Origin Resource Sharing (CORS) which could allow an attacker to carry out privileged actions and retrieve sensitive information as the domain name is not being limited to only trusted domains. IBM X-Force ID: 196344.

EPSS

Процентиль: 37%
0.00158
Низкий

Связанные уязвимости

CVSS3: 6.5
nvd
почти 5 лет назад

IBM Spectrum Protect Plus 10.1.0 through 10.1.7 uses Cross-Origin Resource Sharing (CORS) which could allow an attacker to carry out privileged actions and retrieve sensitive information as the domain name is not being limited to only trusted domains. IBM X-Force ID: 196344.

EPSS

Процентиль: 37%
0.00158
Низкий