IBM InfoSphere Information Server Information Disclosure Vulnerability

Vulnerability

An information disclosure vulnerability has been identified in IBM InfoSphere Information Server version 11.7. This vulnerability allows an authenticated user to access sensitive information through directory listings, which could facilitate further attacks against the system.

Impact

Exploitation of this vulnerability could lead to unauthorized information disclosure, allowing authenticated users to access sensitive data that could be used to launch additional attacks on the system.

Remediation

Users can upgrade to InfoSphere Information Server versions 11.7.1.0 or 11.7.1.6. Alternatively, the Information Server Framework security patch is available.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
3.1
impact
2.5
exploitability
5.2
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.