← Back

CVE-2009-5001

nvd nist
Published: Sep 20, 2010Modified: Apr 29, 2026

JSON object

Loading...
4.0
Vector
AV:N/AC:L/Au:S/C:N/I:P/A:N
Exploitability: 8.0 / Impact: 2.9
Source: NVD

Description

The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 4.0.2.x before 4.0.2.2-P8AE-FP002 grants a document's Creator-Owner full control over an annotation object, even if the default instance security has changed, which might allow remote authenticated users to bypass intended access restrictions in opportunistic circumstances.

Affected (2)

1 product
Filenet P8 Application Engine
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 4.0.2
Version 4.0.2 001

Related CWEs

Timeline

No history available yet.