Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gr2p-rq43-h8cc

Опубликовано: 11 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 3.3

Описание

IBM Spectrum Copy Data Management Admin 2.2.0.0 through 2.2.15.0 could allow a local attacker to bypass authentication restrictions, caused by the lack of proper session management. An attacker could exploit this vulnerability to bypass authentication and gain unauthorized access to the Spectrum Copy Data Management catalog which contains metadata. IBM X-Force ID: 223718.

IBM Spectrum Copy Data Management Admin 2.2.0.0 through 2.2.15.0 could allow a local attacker to bypass authentication restrictions, caused by the lack of proper session management. An attacker could exploit this vulnerability to bypass authentication and gain unauthorized access to the Spectrum Copy Data Management catalog which contains metadata. IBM X-Force ID: 223718.

EPSS

Процентиль: 11%
0.00038
Низкий

3.3 Low

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 3.3
nvd
больше 3 лет назад

IBM Spectrum Copy Data Management Admin 2.2.0.0 through 2.2.15.0 could allow a local attacker to bypass authentication restrictions, caused by the lack of proper session management. An attacker could exploit this vulnerability to bypass authentication and gain unauthorized access to the Spectrum Copy Data Management catalog which contains metadata. IBM X-Force ID: 223718.

EPSS

Процентиль: 11%
0.00038
Низкий

3.3 Low

CVSS3

Дефекты

CWE-287