Input Validation Flaw in IBM i2 Analyst's Notebook Premium
CVE-2021-29770
4.1MEDIUM
Summary
IBM i2 Analyst's Notebook Premium versions 4.3.0, 4.3.1, and 4.3.2 are susceptible to an input validation failure that can enable authenticated users to carry out unauthorized actions. This flaw points to security oversights where user-provided input can lead to potential exploitation, compromising the integrity of the system. For more information, visit the official IBM support page or IBM X-Force Exchange.
Affected Version(s)
i2 Analyze 4.3.0
i2 Analyze 4.3.1
i2 Analyze 4.3.2
References
CVSS V3.1
Score:
4.1
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved