Skip to main content

Incorrect Ownership Assignment

CVE-2024-41773

Severity Medium
Score 6.5/10

Summary

IBM Global Configuration Management 7.0.2 and 7.0.3 could allow an authenticated user to archive a global baseline due to improper access controls.

  • LOW
  • NETWORK
  • HIGH
  • UNCHANGED
  • NONE
  • LOW
  • NONE
  • NONE

CWE-708 - Incorrect Ownership Assignment

The software assigns an owner to a resource, but the owner is outside of the intended control sphere.

References

Advisory Timeline

  • Published