PT-2018-14951 · Ibm · Ibm Campaign
Published
2018-12-05
·
Updated
2019-10-09
·
CVE-2018-1941
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
IBM Campaign versions 9.1.0 through 9.1.2
Description
The issue allows a local user to obtain administrative privileges due to the application not validating access permissions.
Recommendations
For IBM Campaign versions 9.1.0 through 9.1.2, update to a version that includes the necessary access permission validation to prevent unauthorized privilege escalation.
Fix
Improper Privilege Management
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Campaign