Lucene search

K
cveIbmCVE-2012-3321
HistoryFeb 20, 2013 - 12:09 p.m.

CVE-2012-3321

2013-02-2012:09:21
CWE-264
ibm
web.nvd.nist.gov
18
ibm
smartcloud
control desk
7.5
remote
authenticated
access restrictions
expired password

CVSS2

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

AI Score

6.2

Confidence

Low

EPSS

0.002

Percentile

59.6%

IBM SmartCloud Control Desk 7.5 allows remote authenticated users to bypass intended access restrictions via vectors involving an expired password.

Affected configurations

Nvd
Node
ibmsmartcloud_control_deskMatch7.5
VendorProductVersionCPE
ibmsmartcloud_control_desk7.5cpe:2.3:a:ibm:smartcloud_control_desk:7.5:*:*:*:*:*:*:*

CVSS2

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

AI Score

6.2

Confidence

Low

EPSS

0.002

Percentile

59.6%

Related for CVE-2012-3321