IBM WebSphere Portal 7.x through 7.0.0.2 CF29, 8.0.x before 8.0.0.1 CF20, and 8.5.x before 8.5.0.0 CF09 uses weak permissions for content items, which allows remote authenticated users to make modifications via the authoring UI.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2016-02-29 03:59
Updated : 2016-03-02 06:10
NVD link : CVE-2015-7455
Mitre link : CVE-2015-7455
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
ibm
- websphere_portal