CVE-2010-4806: Medium severity ibm web content manager vulnerability
The authoring tool in IBM Web Content Manager (WCM) 6.1.5, and 7.0.0.1 before CF003, allows remote authenticated users to bypass intended access restrictions on draft creation by leveraging certain resource editor privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-4806?
CVE-2010-4806 is rated as a medium severity vulnerability due to the potential for unauthorized access to draft creation.
How do I fix CVE-2010-4806?
To fix CVE-2010-4806, upgrade to IBM Web Content Manager version 7.0.0.1 or 6.1.5 with the latest patches applied.
Who is affected by CVE-2010-4806?
CVE-2010-4806 affects users of IBM Web Content Manager versions 6.1.5 and 7.0.0.1 before CF003.
What type of attack is enabled by CVE-2010-4806?
CVE-2010-4806 enables unauthorized users to bypass access restrictions to create drafts.
Is CVE-2010-4806 exploitable remotely?
Yes, CVE-2010-4806 can be exploited remotely by authenticated users with specific resource editor privileges.