Описание
An unspecified servlet in IBM Platform Symphony Developer Edition (DE) 5.2 and 6.1.x through 6.1.1 has hardcoded credentials, which allows remote attackers to bypass authentication and obtain "local environment" access via unknown vectors.
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:ibm:platform_symphony:5.2:*:*:*:developer:*:*:*
cpe:2.3:a:ibm:platform_symphony:6.1.0:*:*:*:developer:*:*:*
cpe:2.3:a:ibm:platform_symphony:6.1.1:*:*:*:developer:*:*:*
EPSS
Процентиль: 85%
0.02665
Низкий
10 Critical
CVSS2
Дефекты
CWE-255
Связанные уязвимости
github
больше 3 лет назад
An unspecified servlet in IBM Platform Symphony Developer Edition (DE) 5.2 and 6.1.x through 6.1.1 has hardcoded credentials, which allows remote attackers to bypass authentication and obtain "local environment" access via unknown vectors.
EPSS
Процентиль: 85%
0.02665
Низкий
10 Critical
CVSS2
Дефекты
CWE-255