ZeroHour

CVE-2017-1382

CVSS 3.0
7.1 high
EPSS
<1%p31
Published
()
Modified
Description

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 might create files using the default permissions instead of the customized permissions when custom startup scripts are used. A local attacker could exploit this to gain access to files with an unknown impact. IBM X-Force ID: 127153.

Vendors
ibm
Products
websphere application server
Weakness
CWE-276
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.