PT-2011-2832 · Ibm · Ibm Filenet P8 Content Engine

Published

2011-02-21

·

Updated

2017-08-17

·

CVE-2011-1046

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions IBM FileNet P8 Content Engine versions 4.0.1 through 5.0.0
Description The issue allows remote attackers to change a privileged property of an object via unspecified vectors because it does not require the PRIVILEGED WRITE access role for all intended Object Store modifications.
Recommendations For versions 4.0.1 through 5.0.0, ensure that the PRIVILEGED WRITE access role is required for all intended Object Store modifications to prevent unauthorized changes to privileged properties of objects.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2011-1046

Affected Products

Ibm Filenet P8 Content Engine