IBM InfoSphere Information Server
cpe:2.3:a:ibm:infosphere_information_server:*:*:*:*:*:*:*
- 11.7
An information disclosure vulnerability has been identified in IBM InfoSphere Information Server version 11.7. During the product's new installation process, sensitive user credentials may be inadvertently exposed in log files. This issue arises from the improper handling of sensitive information, which is logged and could potentially be accessed by unauthorized individuals.
Exploitation of this vulnerability could lead to unauthorized access to sensitive user credentials, which could be misused to gain additional privileges or access within the application or associated systems.
Users can upgrade to IBM InfoSphere Information Server version 11.7.1.0 or 11.7.1.6 to address this vulnerability. Instructions for downloading these versions are available on the IBM Support website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.