5.5
CVE-2016-5943
- EPSS 0.11%
- Veröffentlicht 26.09.2016 04:59:14
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle psirt@us.ibm.com
- CVE-Watchlists
- Unerledigt
IBM Spectrum Control (formerly Tivoli Storage Productivity Center) 5.2.x before 5.2.11 allows remote authenticated users to bypass intended access restrictions, and read task details or edit properties, via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Spectrum Control Version5.2.0
Ibm ≫ Spectrum Control Version5.2.1
Ibm ≫ Spectrum Control Version5.2.1.1
Ibm ≫ Spectrum Control Version5.2.2
Ibm ≫ Spectrum Control Version5.2.3
Ibm ≫ Spectrum Control Version5.2.4
Ibm ≫ Spectrum Control Version5.2.4.1
Ibm ≫ Spectrum Control Version5.2.5
Ibm ≫ Spectrum Control Version5.2.5.1
Ibm ≫ Spectrum Control Version5.2.6
Ibm ≫ Spectrum Control Version5.2.7
Ibm ≫ Spectrum Control Version5.2.7.1
Ibm ≫ Spectrum Control Version5.2.8
Ibm ≫ Spectrum Control Version5.2.9
Ibm ≫ Spectrum Control Version5.2.10
Ibm ≫ Spectrum Control Version5.2.10.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.11% | 0.262 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.4 | 2.8 | 2.5 |
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
|
| nvd@nist.gov | 5.5 | 8 | 4.9 |
AV:N/AC:L/Au:S/C:P/I:P/A:N
|
CWE-284 Improper Access Control
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.