Input Validation Flaw in IBM Algorithmics RICOS Affects Data Integrity
CVE-2014-0868

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
7 July 2014

Summary

IBM Algorithmics RICOS versions 4.5.0 through 4.7.0 before 4.7.0.03 FP5 expose a critical input validation vulnerability that allows remote authenticated users to circumvent intended dual-control mechanisms. This flaw permits the manipulation of limit data through specially crafted XML documents, potentially leading to unauthorized modifications of read-only data.

References

EPSS Score

11% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.