IBM InfoSphere Information Server
cpe:2.3:a:ibm:infosphere_information_server:*:*:*:*:*:*:*
- >= 11.7.0.0, <= 11.7.1.6
A vulnerability exists in IBM InfoSphere DataStage Flow Designer within IBM InfoSphere Information Server 11.7, where sensitive user information is transmitted in clear text via API requests. This lack of encryption could allow interception of the data through man-in-the-middle attacks.
Exploitation of this vulnerability could lead to unauthorized interception of sensitive user information transmitted in API requests.
Users can upgrade to InfoSphere Information Server versions 11.7.1.0 or 11.7.1.6. Additionally, an interim security patch for InfoSphere DataStage Flow Designer is available.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.