IBM Connect:Direct for UNIX 6.1.0, 6.0.0, 4.3.0, and 4.2.0 can allow a local or remote user to obtain an authenticated CLI session due to improper authentication methods. IBM X-Force ID: 188516.
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Connect:direct | Ibm | 4.2.0 (including) | 4.2.0 (including) |
Connect:direct | Ibm | 4.3.0 (including) | 4.3.0 (including) |
Connect:direct | Ibm | 6.0.0 (including) | 6.0.0 (including) |
Connect:direct | Ibm | 6.1.0 (including) | 6.1.0 (including) |