CVE-2021-38959

IBM SPSS Statistics for Windows 24.0, 25.0, 26.0, 27.0, 27.0.1, and 28.0 could allow a local user to cause a denial of service by writing arbitrary files to admin protected directories on the system. IBM X-Force ID: 212046.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
ibmCNA
6.2 MEDIUM
LOCAL
LOW
NONE
CVSS:3.0/S:U/PR:N/AV:L/I:N/A:H/C:N/UI:N/AC:L/E:U/RC:C/RL:O
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 10%
VendorProductVersion
ibmspss_statistics
24.0.0.0
ibmspss_statistics
25.0.0.0
ibmspss_statistics
26.0.0.0
ibmspss_statistics
27.0.0.0
ibmspss_statistics
27.0.1.0
ibmspss_statistics
28.0.0.0
𝑥
= Vulnerable software versions