PublicCVE

CVE-2017-1755

MEDIUM6.5JSON exportCreate alert

Description

IBM Security Identity Governance Virtual Appliance 5.2 through 5.2.3.2 could allow a local attacker to inject commands into malicious files that could be executed by the administrator. IBM X-Force ID: 135855.

CVSS breakdown

CVSS 3.0
Availability
High
Attack Complexity
Low
Attack Vector
Local
Confidentiality
High
Integrity
High
Privileges Required
High
Scope
Unchanged
User Interaction
Required
E
Unchanged
RC
Changed
RL
O