CVE-2015-0143Sensitive Information Exposure in IBM Openpages GRC Platform

Severity
4.0MEDIUMNVD
EPSS
0.2%
top 63.31%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 3
Latest updateMay 17

Description

IBM OpenPages GRC Platform 6.2 before IF7, 6.2.1 before 6.2.1.1 IF5, 7.0 before FP4, and 7.1 before FP1 allows remote authenticated users to obtain sensitive information by reading error messages.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 8.0 | Impact: 2.9

Affected Packages1 packages

NVDibm/openpages_grc_platform5 versions+4

Patches

🔴Vulnerability Details

2
GHSA
GHSA-qgqx-vg33-9hfm: IBM OpenPages GRC Platform 62022-05-17
CVEList
CVE-2015-0143: IBM OpenPages GRC Platform 62015-10-03
CVE-2015-0143 — Sensitive Information Exposure in IBM | cvebase