IBM Security Directory Integrator Sensitive Information Disclosure Vulnerability

Vulnerability

A vulnerability in IBM Security Directory Integrator versions 7.2.0.0 through 7.2.0.14 and 10.0.0.0 through 10.0.0.2 allows remote attackers to access sensitive information. This occurs when a detailed technical error message is displayed in the browser, potentially leading to further attacks on the system.

Impact

Exploitation of this vulnerability could result in unauthorized access to sensitive information, which could be used to launch additional attacks against the system.

Remediation

Users are advised to update to IBM Security Directory Integrator version 7.2.0.15 or 10.0.0.3. Instructions for downloading these versions are available on the IBM Support Fix Central website.

Added: May 28, 2026, 2:58 AM
Updated: May 28, 2026, 2:58 AM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
2.5
exploitability
7.0
remediation
7.7
relevance
9.1
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.