CVE-2017-1157

Severity
4.3MEDIUM
EPSS
0.2%
top 56.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 5
Latest updateMay 17

Description

IBM Jazz Reporting Service (JRS) 5.0 and 6.0 could allow an authenticated attacker to access report data that should be restricted to authorized users. IBM X-Force ID: 122788.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NExploitability: 2.8 | Impact: 1.4

Affected Packages2 packages

CVEListV5ibm/jazz_reporting_service7 versions+6

🔴Vulnerability Details

2
GHSA
GHSA-qvh3-7gh8-x9xc: IBM Jazz Reporting Service (JRS) 52022-05-17
CVEList
CVE-2017-1157: IBM Jazz Reporting Service (JRS) 52017-07-05
CVE-2017-1157 (MEDIUM CVSS 4.3) | IBM Jazz Reporting Service (JRS) 5. | cvebase.io