CVSS2
Attack Vector
NETWORK
Attack Complexity
HIGH
Authentication
SINGLE
Confidentiality Impact
PARTIAL
Integrity Impact
NONE
Availability Impact
NONE
AV:N/AC:H/Au:S/C:P/I:N/A:N
AI Score
Confidence
Low
EPSS
Percentile
53.9%
The Administration and Reporting Tool in IBM Rational License Key Server (RLKS) 8.1.4.x before 8.1.4.4 allows remote authenticated users to bypass authorization checks and visit unspecified URLs with license-usage data via a DESCRIBE clause in a SPARQL query.
Vendor | Product | Version | CPE |
---|---|---|---|
ibm | rational_license_key_server | 8.1.4 | cpe:2.3:a:ibm:rational_license_key_server:8.1.4:*:*:*:*:*:*:* |
ibm | rational_license_key_server | 8.1.4.2 | cpe:2.3:a:ibm:rational_license_key_server:8.1.4.2:*:*:*:*:*:*:* |
ibm | rational_license_key_server | 8.1.4.3 | cpe:2.3:a:ibm:rational_license_key_server:8.1.4.3:*:*:*:*:*:*:* |