Required CVE Record Information
Description
IBM Security Secret Server 10.7 uses incomplete blacklisting for input validation which allows attackers to bypass application controls resulting in direct impact to the system and data integrity. IBM X-Force ID: 170043.
CVSS 1 Total
Score | Severity | Version | Vector String |
---|---|---|---|
4.3 | MEDIUM | 3.0 | CVSS:3.0/A:N/S:U/PR:L/UI:N/AV:N/C:N/I:L/AC:L/RC:C/RL:O/E:U |
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- https://www.ibm.com/support/pages/node/1283242 x_transferred
- exchange.xforce.ibmcloud.com: ibm-sss-cve20194637-weak-security (170043) vdb-entryx_transferred