Lucene search

K
ibmIBM0951AF7A25C56743DE8044BB42389B9F283BE7E62D1B144C87B622EF49143511
HistoryJun 17, 2018 - 12:20 p.m.

Security Bulletin: IBM StoredIQ is affected by a privilege escalation vulnerability

2018-06-1712:20:18
www.ibm.com
7

EPSS

0.001

Percentile

18.9%

Summary

IBM StoredIQ has addressed the following vulnerability that could allow an authenticated attacker to bypass certain security restrictions.

Vulnerability Details

CVEID: CVE-2018-1583**
DESCRIPTION:** IBM StoredIQ could allow an authenticated attacker to bypass certain security restrictions. By sending a specially-crafted request, an authenticated attacker could exploit this vulnerability to access and manipulate documents on StoredIQ managed data sources.
CVSS Base Score: 5.4
CVSS Temporal Score: See https://exchange.xforce.ibmcloud.com/vulnerabilities/143331 for the current score
CVSS Environmental Score*: Undefined
CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N)

Affected Products and Versions

Affected IBM StoredIQ

|

Affected Version

—|—
IBM StoredIQ| 7.6.0

Remediation/Fixes

Product

| VRM|Remediation
—|—|—
IBM StoredIQ| 7.6.0| Upgrade to latest Fix Pack StoredIQ 7.6.0.15 and apply Interim Fix 7.6.0.15-IBMStoredIQ-IF001 that is available from Fix Central

Workarounds and Mitigations

None

EPSS

0.001

Percentile

18.9%

Related for 0951AF7A25C56743DE8044BB42389B9F283BE7E62D1B144C87B622EF49143511