CVE-2010-2896
Severity CVSS v4.0:
Pending analysis
Type:
CWE-264
Permissions, Privileges, and Access Control
Publication date:
28/07/2010
Last modified:
11/04/2025
Description
IBM FileNet Content Manager (CM) 4.0.0, 4.0.1, 4.5.0, and 4.5.1 before FP4 does not properly manage the InheritParentPermissions setting during an upgrade from 3.x, which might allow attackers to bypass intended folder permissions via unspecified vectors.
Impact
Base Score 2.0
4.30
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:ibm:filenet_content_manager:4.0.0:*:*:*:*:*:*:* | ||
| cpe:2.3:a:ibm:filenet_content_manager:4.0.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:ibm:filenet_content_manager:4.5.0:*:*:*:*:*:*:* | ||
| cpe:2.3:a:ibm:filenet_content_manager:4.5.1:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



