Lucene search

K
cvelistIbmCVELIST:CVE-2021-29759
HistoryJul 07, 2021 - 4:30 p.m.

CVE-2021-29759

2021-07-0716:30:36
ibm
www.cve.org
2
ibm
app connect enterprise
certified container
sensitive information disclosure
internal log files
security vulnerability

CVSS3

4.4

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C

AI Score

3.3

Confidence

Low

EPSS

0

Percentile

12.6%

IBM App Connect Enterprise Certified Container 1.0, 1.1, 1.2, and 1.3 could allow a privileged user to obtain sensitive information from internal log files. IBM X-Force ID: 202212.

CNA Affected

[
  {
    "product": "App Connect Enterprise Certified Container",
    "vendor": "IBM",
    "versions": [
      {
        "status": "affected",
        "version": "1.0"
      },
      {
        "status": "affected",
        "version": "1.1"
      },
      {
        "status": "affected",
        "version": "1.2"
      },
      {
        "status": "affected",
        "version": "1.3"
      }
    ]
  }
]

CVSS3

4.4

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C

AI Score

3.3

Confidence

Low

EPSS

0

Percentile

12.6%

Related for CVELIST:CVE-2021-29759