PT-2015-2599 · Ibm · Ibm Websphere Portal
Publicado
2015-10-29
·
Atualizado
2016-12-07
·
CVE-2015-4997
CVSS v2.0
6.8
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
IBM WebSphere Portal version 8.5.0 before CF08
Description
The issue is related to insufficient access control in the user interface of the IBM WebSphere Portal server application, allowing remote attackers to bypass intended access restrictions via a crafted request. This can enable a remote attacker to circumvent existing access restrictions using a specially formed request.
Recommendations
For IBM WebSphere Portal version 8.5.0 before CF08, apply Cumulative Fix 08 or a later fix to resolve the issue.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Websphere Portal