Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-43858
HistoryDec 22, 2022 - 9:15 p.m.

Design/Logic Flaw

2022-12-2221:15:00
PRIOn knowledge base
www.prio-n.com
4
ibm navigator
file system
access bypass
authenticated user
interface checks

4.4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

29.2%

IBM Navigator for i 7.3, 7.4, and 7.5 could allow an authenticated user to access the file system and download files they are authorized to but not while using this interface. The remote authenticated user can bypass the interface checks by modifying a parameter thereby gaining access to their files through this interface. IBM X-Force ID: 239303.

CPENameOperatorVersion
ieq7.3
ieq7.4
ieq7.5

4.4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

29.2%

Related for PRION:CVE-2022-43858