CVE-2018-1791 Information
Feb 14, 2021
cve
Description
IBM Connections 5.0 5.5 and 6.0 is vulnerable to an External Service Interaction attack caused by improper validation of a request property. By submitting suitable payloads an attacker could exploit this vulnerability to induce the Connections server to attack other systems. IBM X-Force ID: 148946.
CVSS Vector
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:L
Reference
https://exchange.xforce.ibmcloud.com/vulnerabilities/148946 https://www.ibm.com/support/docview.wss?uid=ibm10731207
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
CHANGED
Integrity Impact
LOW
Availability Impact
NONE
Base Score
LOW
Base Severity
4.9
Share on: