CVE Vulnerabilities

CVE-2016-2917

Published: Nov 30, 2016 | Modified: Dec 01, 2016
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The notifications component in IBM TRIRIGA Applications 10.4 and 10.5 before 10.5.1 allows remote authenticated users to obtain sensitive password information, and consequently gain privileges, via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Tririga_application_platform Ibm 10.4 (including) 10.4 (including)
Tririga_application_platform Ibm 10.5 (including) 10.5 (including)

References