Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gfgq-4pqr-j2gw

Опубликовано: 05 мар. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

LDAP users on IBM Spectrum Virtualize 8.5 which are configured to require multifactor authentication can still authenticate to the CIM interface using only username and password. This does not affect local users with MFA configured or remote users authenticating via single sign-on. IBM X-Force ID: 247033.

LDAP users on IBM Spectrum Virtualize 8.5 which are configured to require multifactor authentication can still authenticate to the CIM interface using only username and password. This does not affect local users with MFA configured or remote users authenticating via single sign-on. IBM X-Force ID: 247033.

EPSS

Процентиль: 10%
0.00035
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-308

Связанные уязвимости

CVSS3: 5.3
nvd
почти 2 года назад

LDAP users on IBM Spectrum Virtualize 8.5 which are configured to require multifactor authentication can still authenticate to the CIM interface using only username and password. This does not affect local users with MFA configured or remote users authenticating via single sign-on. IBM X-Force ID: 247033.

EPSS

Процентиль: 10%
0.00035
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-308