Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IBM FileNet P8 Content Engine (aka P8CE) 4.0.1 through 5.0.0, as used in FileNet P8 Content Manager (CM) and FileNet P8 Business Process Manager (BPM), does not require the PRIVILEGED_WRITE access role for all intended Object Store modifications, which allows remote attackers to change a privileged property of an object via unspecified vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM FileNet P8 Content Engine权限许可和访问控制漏洞
Vulnerability Description
IBM FileNet P8 Content Engine是 FileNet P8 平台的三大引擎之一。 用于FileNet P8 Content Manager(CM)和FileNet P8 Business Process Manager(BPM)中的IBM FileNet P8 Content Engine(又名P8CE)4.0.1至5.0.0版本没有为预设的Object Store修改请求PRIVILEGED_WRITE访问角色。远程攻击者可以借助未明向量改变对象的特权属性。
CVSS Information
N/A
Vulnerability Type
N/A