IBM Concert Software 1.0.0, 1.0.1, 1.0.2, and 1.0.2.1 could allow an authenticated user to perform unauthorized actions that should be reserved to administrator used due to improper access controls.
History

Tue, 19 Nov 2024 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 19 Nov 2024 19:45:00 +0000

Type Values Removed Values Added
Description IBM Concert Software 1.0.0, 1.0.1, 1.0.2, and 1.0.2.1 could allow an authenticated user to perform unauthorized actions that should be reserved to administrator used due to improper access controls.
Title IBM Concert Software improper access controls
First Time appeared Ibm
Ibm concert
Weaknesses CWE-286
CPEs cpe:2.3:a:ibm:concert:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:concert:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:concert:1.0.2.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:concert:1.0.2:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm concert
References
Metrics cvssV3_1

{'score': 4.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2024-11-19T19:39:28.395Z

Updated: 2024-11-19T20:03:35.927Z

Reserved: 2024-11-10T16:11:09.566Z

Link: CVE-2024-52359

cve-icon Vulnrichment

Updated: 2024-11-19T20:03:25.229Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-11-19T20:15:31.840

Modified: 2024-11-19T21:56:45.533

Link: CVE-2024-52359

cve-icon Redhat

No data.