PT-2018-4408 · Ibm · Ibm Curam Social Program Management

Published

2018-03-26

·

Updated

2018-04-19

·

CVE-2015-7401

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Curam Social Program Management versions 6.1.x through 6.1.1.0
Description The issue allows remote authenticated users to bypass intended access restrictions and obtain sensitive document information by guessing the document id.
Recommendations For versions 6.1.x through 6.1.1.0, update to version 6.1.1.1 or later to resolve the issue.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-7401

Affected Products

Ibm Curam Social Program Management