← Back to CVE search

CVE-2026-3660

IBM Engineering Lifecycle Management

Description

IBM Engineering Lifecycle Management 7.0.3, 7.1.0, and 7.2.0 could allow an unauthenticated remote attacker to update server property files that would allow them to gain unauthorized access to the application.

CVSS 9.8EPSS 0.58%Risk 1.03
View source
Published
2026-05-26 19:16:27
Affected versions
<=7.0.3,<=7.1.0,<=7.2.0
Type
Core software
Last modified
2026-07-24 11:10:00
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H