Skip to main content

Incorrect User Management

CVE-2024-52359

Severity Medium
Score 4.3/10

Summary

IBM Concert Software 1.0.0, 1.0.1, 1.0.2, and 1.0.2.1 could allow an authenticated user to perform unauthorized actions that should be reserved to administrator used due to improper access controls.

  • LOW
  • NETWORK
  • LOW
  • UNCHANGED
  • NONE
  • LOW
  • NONE
  • NONE

CWE-286 - Incorrect User Management

The software does not properly manage a user within its environment.

References

Advisory Timeline

  • Published