Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-4581

Overview

Vulnerability Score 4.0 4.0
CVE Id CVE-2008-4581
Last Modified 23 Jul 2009 12:00:00
Published 15 Oct 2008 04:08:02
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication SINGLE_INSTANCE

CVE-2008-4581

Summary

The Editor in IBM ENOVIA SmarTeam 5 before release 18 SP5, and release 19 before SP01, allows remote authenticated users to bypass intended access restrictions and read Document objects via the Workflow Process (aka Flow Process) view.

Vulnerable Systems

Application

  • Ibm Enovia Smarteam 5


References

XF - enovia-workflowprocess-security-bypass(45943)

BID - 31748

AIXAPAR - HD71425

CONFIRM - http://www-01.ibm.com/support/docview.wss?uid=swg27012567&aid=1

SECUNIA - 32105


Last Updated: 27 May 2016 10:48:33