CVE-2012-4818

MEDIUM

IBM InfoSphere Information Server <8.8 - Info Disclosure

Title source: llm
STIX 2.1

Description

IBM InfoSphere Information Server 8.1, 8.5, and 8,7 could allow a remote authenticated attacker to obtain sensitive information, caused by improper restrictions on directories. An attacker could exploit this vulnerability via the DataStage application to load or import content functionality to view arbitrary files on the system.

Scores

CVSS v3 6.5
EPSS 0.0140
EPSS Percentile 69.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Details

Status published
Products (3)
ibm/infosphere_information_server 8.1
ibm/infosphere_information_server 8.5
ibm/infosphere_information_server 8.7
Published Sep 29, 2022
Tracked Since Feb 18, 2026