Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jv3x-w786-8ggq

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A low level user of IBM Cognos Controller 10.3.0, 10.3.1, 10.4.0, 10.4.1, and 10.4.2 who has Administration rights to the server where the application is installed, can escalate their privilege from Low level to Super Admin and gain access to Create/Update/Delete any level of user in Cognos Controller. IBM X-Force ID: 186625.

A low level user of IBM Cognos Controller 10.3.0, 10.3.1, 10.4.0, 10.4.1, and 10.4.2 who has Administration rights to the server where the application is installed, can escalate their privilege from Low level to Super Admin and gain access to Create/Update/Delete any level of user in Cognos Controller. IBM X-Force ID: 186625.

EPSS

Процентиль: 66%
0.00522
Низкий

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 7.2
nvd
около 5 лет назад

A low level user of IBM Cognos Controller 10.3.0, 10.3.1, 10.4.0, 10.4.1, and 10.4.2 who has Administration rights to the server where the application is installed, can escalate their privilege from Low level to Super Admin and gain access to Create/Update/Delete any level of user in Cognos Controller. IBM X-Force ID: 186625.

EPSS

Процентиль: 66%
0.00522
Низкий

Дефекты

CWE-269