PT-2024-1986 · Ibm · Ibm Filenet Content Manager

Published

2024-02-29

·

Updated

2025-08-15

·

CVE-2023-47716

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IBM CP4BA - Filenet Content Manager Component versions 5.5.8.0 through 5.5.11.0
Description The issue is related to insufficient access control in the IBM FileNet Content Manager component, which could allow a user to gain the privileges of another user under unusual circumstances.
Recommendations For versions 5.5.8.0 through 5.5.11.0, consider restricting access to sensitive features until a patch is available. As a temporary workaround, consider disabling any functionality that relies on user privilege escalation until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Authorization

Weakness Enumeration

Related Identifiers

BDU:2024-01824
CVE-2023-47716

Affected Products

Ibm Filenet Content Manager