IBM InfoSphere Information Server Sensitive Information Logging Vulnerability

Vulnerability

A vulnerability exists in IBM InfoSphere Information Server versions 11.7.0.0 through 11.7.1.6, allowing sensitive information to be improperly logged. This issue is categorized under CWE-532, which pertains to the insertion of sensitive information into log files.

Impact

The vulnerability could lead to the unintentional exposure of sensitive information through log files, potentially allowing unauthorized individuals to access this information.

Remediation

Users can upgrade to IBM InfoSphere Information Server versions 11.7.1.0 or 11.7.1.6. Alternatively, a security patch is available for version 11.7.1.5.

Added: Mar 3, 2026, 8:24 PM
Updated: Mar 3, 2026, 10:08 PM

Vulnerability Rating

Custom Algorithm
spread
3.1
impact
2.5
exploitability
5.2
remediation
7.7
relevance
3.4
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.