CVE-2026-17472
9.6
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N
Summary
IBM Concert 1.0.0 through 3.0.0 could allow a remote authenticated attacker to access or modify unauthorized resources due to the use of wildcards in RBAC permission definitions.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| IBM | Concert | 1.0.0 <= 3.0.0 | affected |
Weaknesses
- CWE-269: CWE-269 Improper Privilege Management
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.