CVE-2012-4818
MEDIUMIBM InfoSphere Information Server <8.8 - Info Disclosure
Title source: llmDescription
IBM InfoSphere Information Server 8.1, 8.5, and 8,7 could allow a remote authenticated attacker to obtain sensitive information, caused by improper restrictions on directories. An attacker could exploit this vulnerability via the DataStage application to load or import content functionality to view arbitrary files on the system.
References (2)
Core 2
Core References
VDB Entry, Vendor Advisory vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/78651
Scores
CVSS v3
6.5
EPSS
0.0140
EPSS Percentile
69.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Details
Status
published
Products (3)
ibm/infosphere_information_server
8.1
ibm/infosphere_information_server
8.5
ibm/infosphere_information_server
8.7
Published
Sep 29, 2022
Tracked Since
Feb 18, 2026