The web user interface in IBM WebSphere Message Broker 8.0 before 8.0.0.6 and IBM Integration Bus 9.0 before 9.0.0.3 allows remote authenticated users to obtain sensitive information by reading the error page.
2014-09-18T10:55:11.063
2025-04-12T10:46:40.837
Deferred
CVSSv2: 4.0 (MEDIUM)
AV:N/AC:L/Au:S/C:P/I:N/A:N
8.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | websphere_message_broker | 8.0 | Yes |
Application | ibm | websphere_message_broker | 8.0.0.1 | Yes |
Application | ibm | websphere_message_broker | 8.0.0.2 | Yes |
Application | ibm | websphere_message_broker | 8.0.0.3 | Yes |
Application | ibm | websphere_message_broker | 8.0.0.4 | Yes |
Application | ibm | websphere_message_broker | 8.0.0.5 | Yes |
Application | ibm | integration_bus | 9.0 | Yes |
Application | ibm | integration_bus | 9.0.0.1 | Yes |
Application | ibm | integration_bus | 9.0.0.2 | Yes |