CVE-2016-0342

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
02/02/2018
Last modified:
15/02/2018

Description

IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.3, and 3.5 before 3.5.0.1 allows remote authenticated users to read or modify arbitrary reports by leveraging an incorrect grant of access. IBM X-Force ID: 111783.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:tririga_application_platform:*:*:*:*:*:*:*:* 3.3.0.0 (including) 3.3.2.6 (excluding)
cpe:2.3:a:ibm:tririga_application_platform:*:*:*:*:*:*:*:* 3.4.0.0 (including) 3.4.2.3 (excluding)
cpe:2.3:a:ibm:tririga_application_platform:3.5.0.0:*:*:*:*:*:*:*