CVE-2015-0141: Medium severity ibm openpages vulnerability
Published Oct 3, 2015
·Updated
IBM OpenPages GRC Platform 6.2 before IF7, 6.2.1 before 6.2.1.1 IF5, 7.0 before FP4, and 7.1 before FP1 allows remote authenticated users to modify arbitrary user filters via a JSON request.
Affected Software
5 affected components
IBM OpenPages GRC Platform=6.2.0.0
IBM OpenPages GRC Platform=6.2.1.0
IBM OpenPages GRC Platform=6.2.1.1
IBM OpenPages GRC Platform=7.0.0.0
IBM OpenPages GRC Platform=7.1.0.0
Remediation
Patch Available
Event History
Oct 3, 2015
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-0141?
CVE-2015-0141 is classified as a medium severity vulnerability due to its potential impact on user access control.
2
How do I fix CVE-2015-0141?
To fix CVE-2015-0141, upgrade to IBM OpenPages GRC Platform version 6.2.1.1 IF5 or later, or 7.0 FP4 or later.
3
Who is affected by CVE-2015-0141?
CVE-2015-0141 affects users of IBM OpenPages GRC Platform versions prior to 6.2.1.1 IF5, 7.0 FP4, and 7.1 FP1.
4
What type of attack can exploit CVE-2015-0141?
CVE-2015-0141 can be exploited by remote authenticated users to modify arbitrary user filters.
5
Is CVE-2015-0141 a remote exploit?
Yes, CVE-2015-0141 allows a remote authenticated user to execute commands that modify user filters.