IBM Spectrum Copy Data Management Admin 2.2.0.0 through 2...
Low severity
Unreviewed
Published
Jun 11, 2022
to the GitHub Advisory Database
•
Updated Jan 27, 2023
Description
Published by the National Vulnerability Database
Jun 10, 2022
Published to the GitHub Advisory Database
Jun 11, 2022
Last updated
Jan 27, 2023
IBM Spectrum Copy Data Management Admin 2.2.0.0 through 2.2.15.0 could allow a local attacker to bypass authentication restrictions, caused by the lack of proper session management. An attacker could exploit this vulnerability to bypass authentication and gain unauthorized access to the Spectrum Copy Data Management catalog which contains metadata. IBM X-Force ID: 223718.
References