IBM Curam Social Program Management 6.0.5, 6.1.1, 6.2.0, and 7.0.1 within Citizen Portal could allow an authenticated user to withdraw other user's submitted applications from the system and possibly obtain privileges. IBM X-Force ID: 137380.
2018-01-19T14:29:00.337
2024-11-21T03:59:41.547
Modified
CVSSv3.0: 5.0 (MEDIUM)
AV:N/AC:M/Au:S/C:P/I:P/A:P
6.8
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | curam_social_program_management | 6.0.5 | Yes |
Application | ibm | curam_social_program_management | 6.1.1.0 | Yes |
Application | ibm | curam_social_program_management | 6.2.0.0 | Yes |
Application | ibm | curam_social_program_management | 7.0.1 | Yes |