cvelist/2021/29xxx/CVE-2021-29701.json
2022-01-11 17:01:59 +00:00

109 lines
3.7 KiB
JSON

{
"impact": {
"cvssv3": {
"BM": {
"S": "U",
"AV": "N",
"A": "N",
"PR": "L",
"I": "N",
"UI": "N",
"AC": "L",
"C": "L",
"SCORE": "4.300"
},
"TM": {
"RL": "O",
"E": "U",
"RC": "C"
}
}
},
"references": {
"reference_data": [
{
"title": "IBM Security Bulletin 6539546 (Engineering Workflow Management)",
"name": "https://www.ibm.com/support/pages/node/6539546",
"refsource": "CONFIRM",
"url": "https://www.ibm.com/support/pages/node/6539546"
},
{
"title": "X-Force Vulnerability Report",
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/200657",
"name": "ibm-engineering-cve202129701-info-disc (200657)",
"refsource": "XF"
}
]
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "IBM",
"product": {
"product_data": [
{
"product_name": "Engineering Workflow Management",
"version": {
"version_data": [
{
"version_value": "7.0"
},
{
"version_value": "7.0.1"
},
{
"version_value": "7.0.2"
}
]
}
},
{
"product_name": "Rational Team Concert",
"version": {
"version_data": [
{
"version_value": "6.0.6"
},
{
"version_value": "6.0.6.1"
}
]
}
}
]
}
}
]
}
},
"description": {
"description_data": [
{
"lang": "eng",
"value": "IBM Engineering Workflow Management 7.0, 7.0.1, and 7.0.2 as well as IBM Rational Team Concert 6.0.6 and 6.0.6.1 could allow an authneticated attacker to obtain sensitive information from build definitions that could aid in further attacks against the system. IBM X-Force ID: 200657."
}
]
},
"data_version": "4.0",
"data_format": "MITRE",
"problemtype": {
"problemtype_data": [
{
"description": [
{
"value": "Obtain Information",
"lang": "eng"
}
]
}
]
},
"CVE_data_meta": {
"STATE": "PUBLIC",
"ASSIGNER": "psirt@us.ibm.com",
"DATE_PUBLIC": "2022-01-10T00:00:00",
"ID": "CVE-2021-29701"
},
"data_type": "CVE"
}