CVE-2015-7424

Severity
4.3MEDIUM
EPSS
0.1%
top 71.45%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 26
Latest updateMay 14

Description

IBM InfoSphere Master Data Management (MDM) - Collaborative Edition 9.1, 10.1, 11.0, 11.3, 11.4, and 11.5 allow remote authenticated users to bypass intended access restrictions and obtain sensitive information by leveraging Catalogs access. IBM X-Force ID: 107780.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NExploitability: 2.8 | Impact: 1.4

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-f237-3p24-23pv: IBM InfoSphere Master Data Management (MDM) - Collaborative Edition 92022-05-14
CVEList
CVE-2015-7424: IBM InfoSphere Master Data Management (MDM) - Collaborative Edition 92018-03-26

💬Community

1
Bugzilla
CVE-2013-7424 glibc: Invalid-free when using getaddrinfo()2015-01-28
CVE-2015-7424 (MEDIUM CVSS 4.3) | IBM InfoSphere Master Data Manageme | cvebase.io