Описание
IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.2.0 could allow an authenticated user to obtain highly sensitive information or perform unauthorized actions due to improper input validation. IBM X-Force ID: 233777.
Ссылки
- VDB EntryVendor Advisory
- PatchVendor Advisory
- VDB EntryVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 1.10.0.0 (включая) до 1.10.2.0 (включая)
Одновременно
cpe:2.3:a:ibm:cloud_pak_for_security:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
EPSS
Процентиль: 37%
0.00153
Низкий
7.1 High
CVSS3
8.1 High
CVSS3
Дефекты
CWE-20
CWE-20
Связанные уязвимости
CVSS3: 8.1
github
около 3 лет назад
IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.2.0 could allow an authenticated user to obtain highly sensitive information or perform unauthorized actions due to improper input validation. IBM X-Force ID: 233777.
EPSS
Процентиль: 37%
0.00153
Низкий
7.1 High
CVSS3
8.1 High
CVSS3
Дефекты
CWE-20
CWE-20