4.3

CVE-2024-43196

IBM OpenPages with Watson 8.3 and 9.0 

application could allow an authenticated user to manipulate data in the Questionnaires application allowing the user to spoof other users' responses.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Data is provided by the National Vulnerability Database (NVD)
IbmOpenpages With Watson Version >= 8.3 < 8.3.0.3
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
IbmOpenpages With Watson Version >= 9.0 < 9.0.0.5
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.08% 0.249
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
psirt@us.ibm.com 4.3 2.8 1.4
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
CWE-296 Improper Following of a Certificate's Chain of Trust

The product does not follow, or incorrectly follows, the chain of trust for a certificate back to a trusted root certificate, resulting in incorrect trust of any resource that is associated with that certificate.