PT-2024-29557 · Ibm · Ibm Global Configuration Management

Published

2024-08-20

·

Updated

2024-08-26

·

CVE-2024-41773

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions IBM Global Configuration Management versions 7.0.2 through 7.0.3
Description The issue is related to improper access controls, allowing an authenticated user to archive a global baseline. This could potentially lead to privilege escalation due to an incorrect ownership assignment flaw.
Recommendations For versions 7.0.2 and 7.0.3, upgrade the affected component immediately to resolve the issue.

Fix

Weakness Enumeration

Related Identifiers

CVE-2024-41773

Affected Products

Ibm Global Configuration Management