The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-001 does not ensure that the AE Administrator role is present for Site Preferences modifications, which allows remote authenticated users to bypass intended access restrictions via unspecified vectors.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-17T01:36:00.579Z
Reserved: 2010-09-20T00:00:00Z
Link: CVE-2006-7242

No data.

Status : Deferred
Published: 2010-09-20T22:00:02.423
Modified: 2025-04-11T00:51:21.963
Link: CVE-2006-7242

No data.

No data.