Overview
- Description
- IBM AIX 7.2, 7.3, VIOS 3.1's OpenSSH implementation could allow a non-privileged local user to access files outside of those allowed due to improper access controls. IBM X-Force ID: 263476.
- Source
- psirt@us.ibm.com
- NVD status
- Modified
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 5.5
- Impact score
- 3.6
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
- Severity
- MEDIUM
Weaknesses
- psirt@us.ibm.com
- CWE-327
- nvd@nist.gov
- NVD-CWE-noinfo
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:vios:3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6F61BE89-FBDE-4312-8422-86D1A9F57C9E" }, { "criteria": "cpe:2.3:o:ibm:aix:7.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6791504A-A48A-4ED0-94AF-4C8A3B91516F" }, { "criteria": "cpe:2.3:o:ibm:aix:7.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "35DF3DE0-1AE4-4B25-843F-BC08DBBFDF78" } ], "operator": "OR" } ] } ]