Home
MEDIUM: 5.4 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:NDefault status
unaffected
1.0.0, 1.0.1, 1.0.2, 1.0.2.1, 1.0.3
affected
Description
IBM Concert Software 1.0.0, 1.0.1, 1.0.2, 1.0.2.1, and 1.0.3 could allow an authenticated user to inject malicious information or obtain information from log files due to improper log neutralization.
Problem types
CWE-117 Improper Output Neutralization for Logs
Product status
1.0.0, 1.0.1, 1.0.2, 1.0.2.1, 1.0.3
References
www.ibm.com/support/pages/node/7180303