Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-92m4-vvrf-4c9g

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 2.5

Описание

IBM Spectrum Protect (formerly Tivoli Storage Manager) 5.5 through 6.3 before 6.3.2.6, 6.4 before 6.4.3.3, and 7.1 before 7.1.6 allows local users to obtain sensitive retrieved data from arbitrary accounts in opportunistic circumstances by leveraging previous use of a symlink during archive and retrieve actions.

IBM Spectrum Protect (formerly Tivoli Storage Manager) 5.5 through 6.3 before 6.3.2.6, 6.4 before 6.4.3.3, and 7.1 before 7.1.6 allows local users to obtain sensitive retrieved data from arbitrary accounts in opportunistic circumstances by leveraging previous use of a symlink during archive and retrieve actions.

EPSS

Процентиль: 17%
0.00055
Низкий

2.5 Low

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 2.5
nvd
больше 9 лет назад

IBM Spectrum Protect (formerly Tivoli Storage Manager) 5.5 through 6.3 before 6.3.2.6, 6.4 before 6.4.3.3, and 7.1 before 7.1.6 allows local users to obtain sensitive retrieved data from arbitrary accounts in opportunistic circumstances by leveraging previous use of a symlink during archive and retrieve actions.

EPSS

Процентиль: 17%
0.00055
Низкий

2.5 Low

CVSS3

Дефекты

CWE-200