CVE-2021-29774

Severity
7.5HIGH
EPSS
0.3%
top 49.62%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 27
Latest updateMay 24

Description

IBM Jazz Team Server products could allow an authenticated user to obtain elevated privileges under certain configurations. IBM X-Force ID: 203025.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.6 | Impact: 5.9

Affected Packages12 packages

CVEListV5ibm/rational_team_concert6.0.2, 6.0.6, 6.0.6.1+2
NVDibm/rational_team_concert4 versions+3
CVEListV5ibm/rational_doors_next_generation5 versions+4

Patches

🔴Vulnerability Details

2
GHSA
GHSA-3wcm-vppv-p3q9: IBM Jazz Team Server products could allow an authenticated user to obtain elevated privileges under certain configurations2022-05-24
CVEList
CVE-2021-29774: IBM Jazz Team Server products could allow an authenticated user to obtain elevated privileges under certain configurations2021-10-27
CVE-2021-29774 (HIGH CVSS 7.5) | IBM Jazz Team Server products could | cvebase.io