Lucene search

K
cveMitreCVE-2008-0402
HistoryJan 23, 2008 - 12:00 p.m.

CVE-2008-0402

2008-01-2312:00:00
CWE-264
mitre
web.nvd.nist.gov
19
cve-2008-0402
ibm
websphere
business modeler
vulnerability
access restrictions
remote users

CVSS2

6

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:S/C:P/I:P/A:P

AI Score

6.1

Confidence

Low

EPSS

0.004

Percentile

73.5%

Unspecified vulnerability in IBM WebSphere Business Modeler Basic and Advanced 6.0.2.1 before Interim Fix 11 allows remote authenticated users to bypass intended access restrictions and delete unspecified repository resources via unknown vectors, even when they are not administrators or members of the repository’s owning group.

Affected configurations

Nvd
Node
ibmwebsphere_business_modelerMatch6.0.2_1advanced
OR
ibmwebsphere_business_modelerMatch6.0.2_1basic
VendorProductVersionCPE
ibmwebsphere_business_modeler6.0.2_1cpe:2.3:a:ibm:websphere_business_modeler:6.0.2_1:*:advanced:*:*:*:*:*
ibmwebsphere_business_modeler6.0.2_1cpe:2.3:a:ibm:websphere_business_modeler:6.0.2_1:*:basic:*:*:*:*:*

CVSS2

6

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:S/C:P/I:P/A:P

AI Score

6.1

Confidence

Low

EPSS

0.004

Percentile

73.5%

Related for CVE-2008-0402