Описание
IBM Distributed Marketing 8.6, 9.0, and 10.0 could allow a privileged authenticated user to create an instance that gets created with security profile not valid for the templates, that results in the new instance not accessible for the intended user. IBM X-Force ID: 116379.
Ссылки
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:ibm:distributed_marketing:8.6.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:8.6.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:8.6.0.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:8.6.0.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:8.6.0.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:8.6.0.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:8.6.0.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:8.6.0.8:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:8.6.0.9:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:8.6.0.10:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:9.1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:9.1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:9.1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:9.1.0.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:9.1.0.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:9.1.0.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:9.1.0.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:9.1.0.8:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:9.1.0.9:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:9.1.0.10:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:9.1.0.11:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:9.1.2.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:9.1.2.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:9.1.2.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:9.1.2.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:10.0.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:distributed_marketing:10.0.0.1:*:*:*:*:*:*:*
EPSS
Процентиль: 47%
0.0024
Низкий
2.7 Low
CVSS3
4 Medium
CVSS2
Дефекты
CWE-264
Связанные уязвимости
CVSS3: 2.7
github
больше 3 лет назад
IBM Distributed Marketing 8.6, 9.0, and 10.0 could allow a privileged authenticated user to create an instance that gets created with security profile not valid for the templates, that results in the new instance not accessible for the intended user. IBM X-Force ID: 116379.
EPSS
Процентиль: 47%
0.0024
Низкий
2.7 Low
CVSS3
4 Medium
CVSS2
Дефекты
CWE-264