CVE-2017-1787

Severity
6.7MEDIUM
EPSS
0.0%
top 88.22%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 2
Latest updateMay 13

Description

IBM Publishing Engine 2.1.2 and 6.0.5 contains an undisclosed vulnerability that could allow a local user with administrative privileges to obtain hard coded user credentials. IBM X-Force ID: 137022.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:NExploitability: 0.8 | Impact: 3.6

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-q273-3x5q-wqv4: IBM Publishing Engine 22022-05-13
CVEList
CVE-2017-1787: IBM Publishing Engine 22018-03-02
CVE-2017-1787 (MEDIUM CVSS 6.7) | IBM Publishing Engine 2.1.2 and 6.0 | cvebase.io