CVE-2019-4257
MEDIUMIBM InfoSphere Information Server 11.5 and 11.7 - Sensitive Information Exposure via Error Message
Title source: llmDescription
IBM InfoSphere Information Server 11.5 and 11.7 is affected by an information disclosure vulnerability. Sensitive information in an error message may be used to conduct further attacks against the system. IBM X-Force ID: 159945.
References (2)
Core 2
Core References
Patch, Vendor Advisory x_refsource_confirm
https://www.ibm.com/support/docview.wss?uid=ibm10882478
VDB Entry, Vendor Advisory vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/159945
Scores
CVSS v3
4.3
EPSS
0.0099
EPSS Percentile
58.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Details
CWE
CWE-209
Status
published
Products (6)
ibm/infosphere_information_analyzer
11.5
ibm/infosphere_information_analyzer
11.7
ibm/infosphere_information_governance_catalog
11.5
ibm/infosphere_information_governance_catalog
11.7
ibm/infosphere_information_server_on_cloud
11.5
ibm/infosphere_information_server_on_cloud
11.7
Published
Jun 06, 2019
Tracked Since
Feb 18, 2026