CVE-2026-17472

Summary

IBM Concert 1.0.0 through 3.0.0 could allow a remote authenticated attacker to access or modify unauthorized resources due to the use of wildcards in RBAC permission definitions.

Affected Software

VendorProductVersion RangeStatus
IBMConcert1.0.0 <= 3.0.0affected

Weaknesses

  • CWE-269: CWE-269 Improper Privilege Management

References