← Back

CVE-2026-3660

nvd nist
Published: May 26, 2026Modified: May 29, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: psirt@us.ibm.com (Secondary)

Description

IBM Engineering Lifecycle Management 7.0.3, 7.1.0, and 7.2.0 could allow an unauthenticated remote attacker to update server property files that would allow them to gain unauthorized access to the application.

Affected (33)

1 product
Engineering Lifecycle Management
Configuration A
33 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 7.0.3
Version 7.0.3 ifix002
Version 7.0.3 ifix003
Version 7.0.3 ifix004
Version 7.0.3 ifix005
Version 7.0.3 ifix006
Version 7.0.3 ifix007
Version 7.0.3 ifix008
Version 7.0.3 ifix009
Version 7.0.3 ifix010
Version 7.0.3 ifix011
Version 7.0.3 ifix012
Version 7.0.3 ifix013
Version 7.0.3 ifix014
Version 7.0.3 ifix015
Version 7.0.3 ifix016
Version 7.0.3 ifix017
Version 7.0.3 ifix018
Version 7.0.3 ifix019
Version 7.0.3 ifix020
Version 7.0.3 ifix021
Version 7.1.0
Version 7.1.0 ifix001
Version 7.1.0 ifix002
Version 7.1.0 ifix003
Version 7.1.0 ifix004
Version 7.1.0 ifix005
Version 7.1.0 ifix006
Version 7.1.0 ifix007
Version 7.1.0 ifix008
Version 7.1.0 ifix009
Version 7.2.0
Version 7.2.0 ifix001

References (1)

Source: psirt@us.ibm.com
Vendor Advisory

Timeline

No history available yet.