CVE-2013-2959

IBM InfoSphere Optim Data Growth - Info Disclosure

Title source: llm
STIX 2.1

Description

The Console in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 does not provide an encrypted session for transmitting login credentials, which allows remote attackers to obtain sensitive information by sniffing the network.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/83668
Vendor Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21637444

Scores

EPSS 0.0117
EPSS Percentile 64.2%

Details

CWE
CWE-255
Status published
Products (18)
ibm/infosphere_optim_data_growth_for_oracle_e-business_suite 6.0
ibm/infosphere_optim_data_growth_for_oracle_e-business_suite 6.1
ibm/infosphere_optim_data_growth_for_oracle_e-business_suite 6.3.1
ibm/infosphere_optim_data_growth_for_oracle_e-business_suite 6.3.2
ibm/infosphere_optim_data_growth_for_oracle_e-business_suite 6.3.3
ibm/infosphere_optim_data_growth_for_oracle_e-business_suite 6.4.0
ibm/infosphere_optim_data_growth_for_oracle_e-business_suite 6.4.1
ibm/infosphere_optim_data_growth_for_oracle_e-business_suite 6.5.0
ibm/infosphere_optim_data_growth_for_oracle_e-business_suite 6.5.1
ibm/infosphere_optim_data_growth_for_oracle_e-business_suite 7.1.0
... and 8 more
Published May 27, 2013
Tracked Since Feb 18, 2026