PublicCVE

CVE-2018-1738

HIGH7.1JSON exportCreate alert

Description

IBM Security Key Lifecycle Manager 2.6, 2.7, 3.0 could allow an authenticated user to obtain highly sensitive information or jeopardize system integrity due to improper authentication mechanisms. IBM X-Force ID: 147907.

CVSS breakdown

CVSS 3.0
Availability
None
Attack Complexity
Low
Attack Vector
Network
Confidentiality
High
Integrity
Low
Privileges Required
Low
Scope
Unchanged
User Interaction
None
E
Unchanged
RC
Changed
RL
O