cbcvebase.
CVE-2016-5898
published 2017-02-01

CVE-2016-5898: IBM Jazz Reporting Service (JRS) could allow a remote attacker to obtain sensitive information, caused by not restricting JSON serialization. By sending a…

medium4.3CVSS 3.0
AVNACLPRLUINSUCLINAN
IBM Jazz Reporting Service (JRS) could allow a remote attacker to obtain sensitive information, caused by not restricting JSON serialization. By sending a direct request, an attacker could exploit this vulnerability to obtain sensitive information.

Affected

13 ranges
VendorProductVersion rangeFixed in
ibmjazz_reporting_service
ibmjazz_reporting_service
ibmjazz_reporting_service
ibmjazz_reporting_service
ibmjazz_reporting_service
ibmjazz_reporting_service
ibm_corporationjazz_reporting_service
ibm_corporationjazz_reporting_service
ibm_corporationjazz_reporting_service
ibm_corporationjazz_reporting_service
ibm_corporationjazz_reporting_service
ibm_corporationjazz_reporting_service
ibm_corporationjazz_reporting_service