mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-08-04 08:44:25 +00:00
109 lines
3.7 KiB
JSON
109 lines
3.7 KiB
JSON
{
|
|
"impact": {
|
|
"cvssv3": {
|
|
"BM": {
|
|
"S": "U",
|
|
"AV": "N",
|
|
"A": "N",
|
|
"PR": "L",
|
|
"I": "N",
|
|
"UI": "N",
|
|
"AC": "L",
|
|
"C": "L",
|
|
"SCORE": "4.300"
|
|
},
|
|
"TM": {
|
|
"RL": "O",
|
|
"E": "U",
|
|
"RC": "C"
|
|
}
|
|
}
|
|
},
|
|
"references": {
|
|
"reference_data": [
|
|
{
|
|
"title": "IBM Security Bulletin 6539546 (Engineering Workflow Management)",
|
|
"name": "https://www.ibm.com/support/pages/node/6539546",
|
|
"refsource": "CONFIRM",
|
|
"url": "https://www.ibm.com/support/pages/node/6539546"
|
|
},
|
|
{
|
|
"title": "X-Force Vulnerability Report",
|
|
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/200657",
|
|
"name": "ibm-engineering-cve202129701-info-disc (200657)",
|
|
"refsource": "XF"
|
|
}
|
|
]
|
|
},
|
|
"affects": {
|
|
"vendor": {
|
|
"vendor_data": [
|
|
{
|
|
"vendor_name": "IBM",
|
|
"product": {
|
|
"product_data": [
|
|
{
|
|
"product_name": "Engineering Workflow Management",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_value": "7.0"
|
|
},
|
|
{
|
|
"version_value": "7.0.1"
|
|
},
|
|
{
|
|
"version_value": "7.0.2"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
{
|
|
"product_name": "Rational Team Concert",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_value": "6.0.6"
|
|
},
|
|
{
|
|
"version_value": "6.0.6.1"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"description": {
|
|
"description_data": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "IBM Engineering Workflow Management 7.0, 7.0.1, and 7.0.2 as well as IBM Rational Team Concert 6.0.6 and 6.0.6.1 could allow an authneticated attacker to obtain sensitive information from build definitions that could aid in further attacks against the system. IBM X-Force ID: 200657."
|
|
}
|
|
]
|
|
},
|
|
"data_version": "4.0",
|
|
"data_format": "MITRE",
|
|
"problemtype": {
|
|
"problemtype_data": [
|
|
{
|
|
"description": [
|
|
{
|
|
"value": "Obtain Information",
|
|
"lang": "eng"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"CVE_data_meta": {
|
|
"STATE": "PUBLIC",
|
|
"ASSIGNER": "psirt@us.ibm.com",
|
|
"DATE_PUBLIC": "2022-01-10T00:00:00",
|
|
"ID": "CVE-2021-29701"
|
|
},
|
|
"data_type": "CVE"
|
|
} |