cbcvebase.
CVE-2015-1984
published 2015-07-20

CVE-2015-1984: IBM InfoSphere Master Data Management Collaborative Edition 9.1, 10.1, 11.0, 11.3, and 11.4 before FP03 allows remote authenticated users to bypass intended…

PriorityP422medium4CVSS 2.0
AVNACLAuSCPINAN
EPSS
0.98%
58.5th percentile
IBM InfoSphere Master Data Management Collaborative Edition 9.1, 10.1, 11.0, 11.3, and 11.4 before FP03 allows remote authenticated users to bypass intended access restrictions and read arbitrary profiles via unspecified vectors, as demonstrated by discovering usernames for use in brute-force attacks.

Affected

5 ranges
VendorProductVersion rangeFixed in
ibminfosphere_master_data_management
ibminfosphere_master_data_management
ibminfosphere_master_data_management
ibminfosphere_master_data_management
ibminfosphere_master_data_management
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.