CVE-2017-1340

Severity
5.0MEDIUM
EPSS
0.2%
top 56.25%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 1
Latest updateMay 17

Description

IBM Jazz Reporting Service (JRS) 6.0.4 could allow an authenticated user to obtain information on another server that the current report builder interacts with. IBM X-Force ID: 126455.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:NExploitability: 3.1 | Impact: 1.4

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-fpcp-jmg4-2cgq: IBM Jazz Reporting Service (JRS) 62022-05-17
CVEList
CVE-2017-1340: IBM Jazz Reporting Service (JRS) 62017-11-01
CVE-2017-1340 (MEDIUM CVSS 5) | IBM Jazz Reporting Service (JRS) 6. | cvebase.io