CVE-2016-5898
published 2017-02-01CVE-2016-5898: IBM Jazz Reporting Service (JRS) could allow a remote attacker to obtain sensitive information, caused by not restricting JSON serialization. By sending a…
medium4.3CVSS 3.0
AVNACLPRLUINSUCLINAN
IBM Jazz Reporting Service (JRS) could allow a remote attacker to obtain sensitive information, caused by not restricting JSON serialization. By sending a direct request, an attacker could exploit this vulnerability to obtain sensitive information.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | jazz_reporting_service | — | — |
| ibm | jazz_reporting_service | — | — |
| ibm | jazz_reporting_service | — | — |
| ibm | jazz_reporting_service | — | — |
| ibm | jazz_reporting_service | — | — |
| ibm | jazz_reporting_service | — | — |
| ibm_corporation | jazz_reporting_service | — | — |
| ibm_corporation | jazz_reporting_service | — | — |
| ibm_corporation | jazz_reporting_service | — | — |
| ibm_corporation | jazz_reporting_service | — | — |
| ibm_corporation | jazz_reporting_service | — | — |
| ibm_corporation | jazz_reporting_service | — | — |
| ibm_corporation | jazz_reporting_service | — | — |