CVE-2012-4818IBM Infosphere Information Server vulnerability

3 documents3 sources
Severity
6.5MEDIUMNVD
EPSS
0.2%
top 58.52%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 29
Latest updateSep 30

Description

IBM InfoSphere Information Server 8.1, 8.5, and 8,7 could allow a remote authenticated attacker to obtain sensitive information, caused by improper restrictions on directories. An attacker could exploit this vulnerability via the DataStage application to load or import content functionality to view arbitrary files on the system.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-2xvj-f2r6-3cg7: IBM InfoSphere Information Server 82022-09-30
CVEList
CVE-2012-4818: IBM InfoSphere Information Server 82020-08-28
CVE-2012-4818 — IBM vulnerability | cvebase