IBM Security Verify Access Appliance 10.0.0 through 10.0.8 could allow a locally authenticated non-administrative user to escalate their privileges due to unnecessary permissions used to perform certain tasks.
History

Fri, 29 Nov 2024 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 29 Nov 2024 17:00:00 +0000

Type Values Removed Values Added
Description IBM Security Verify Access Appliance 10.0.0 through 10.0.8 could allow a locally authenticated non-administrative user to escalate their privileges due to unnecessary permissions used to perform certain tasks.
Title IBM Security Verify Access Appliance privilege escalation
First Time appeared Ibm
Ibm security Verify Access
Weaknesses CWE-250
CPEs cpe:2.3:a:ibm:security_verify_access:10.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_verify_access:10.0.8:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm security Verify Access
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2024-11-29T16:55:32.323Z

Updated: 2024-11-29T17:09:49.542Z

Reserved: 2024-10-20T13:40:24.084Z

Link: CVE-2024-49804

cve-icon Vulnrichment

Updated: 2024-11-29T17:03:20.656Z

cve-icon NVD

Status : Received

Published: 2024-11-29T17:15:08.330

Modified: 2024-11-29T17:15:08.330

Link: CVE-2024-49804

cve-icon Redhat

No data.