Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2019-4257


IBM InfoSphere Information Server 11.5 and 11.7 is affected by an information disclosure vulnerability. Sensitive information in an error message may be used to conduct further attacks against the system. IBM X-Force ID: 159945.


Published

2019-06-06T21:29:01.053

Last Modified

2024-11-21T04:43:23.143

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 4.3 (MEDIUM)

CVSSv2 Vector

AV:N/AC:L/Au:S/C:P/I:N/A:N

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: SINGLE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: NONE
  • Availability Impact: NONE
Exploitability Score

8.0

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-209

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ibm infosphere_information_analyzer 11.5 Yes
Application ibm infosphere_information_analyzer 11.7 Yes
Application ibm infosphere_information_governance_catalog 11.5 Yes
Application ibm infosphere_information_governance_catalog 11.7 Yes
Application ibm infosphere_information_server_on_cloud 11.5 Yes
Application ibm infosphere_information_server_on_cloud 11.7 Yes

References