Insecure Permissions in Atos Eviden IDRA and IDCA before 2.7.0. A highly trusted role (Config Admin) could exceed their configuration privileges in a multi-partition environment and access some confidential data. Data integrity and availability is not at risk.
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.