Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9p8f-m497-5g6q

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Image Viewer component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-002 removes a user from an ACL when the user is denied all permissions for an annotation, which might allow remote authenticated users to bypass intended access restrictions in opportunistic circumstances.

The Image Viewer component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-002 removes a user from an ACL when the user is denied all permissions for an annotation, which might allow remote authenticated users to bypass intended access restrictions in opportunistic circumstances.

EPSS

Процентиль: 26%
0.00092
Низкий

Связанные уязвимости

nvd
больше 15 лет назад

The Image Viewer component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-002 removes a user from an ACL when the user is denied all permissions for an annotation, which might allow remote authenticated users to bypass intended access restrictions in opportunistic circumstances.

EPSS

Процентиль: 26%
0.00092
Низкий