Home
CRITICAL: 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HDefault status
unaffected
7.0.3 (semver)
affected
7.1.0 (semver)
affected
7.2.0 (semver)
affected
Description
IBM Engineering Lifecycle Management 7.0.3, 7.1.0, and 7.2.0 could allow an unauthenticated remote attacker to update server property files that would allow them to gain unauthorized access to the application.
Problem types
CWE-863 Incorrect Authorization
Product status
7.0.3 (semver)
7.1.0 (semver)
7.2.0 (semver)
References
www.ibm.com/support/pages/node/7274079