CVE Published: 19/11/2024 |
CVE Updated: 19/11/2024 |
CVE Year: 2024 Source: ibm |
Vendor: IBM |
Product: Concert Software Status : PUBLISHED
CVE-2024-52359 Description
IBM Concert Software 1.0.0, 1.0.1, 1.0.2, and 1.0.2.1 could allow an authenticated user to perform unauthorized actions that should be reserved to administrator used due to improper access controls.
Metrics
CVSS Version: 3.1 |
Base Score: 4.3 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N