CVE-2017-1309Cleartext Storage of Sensitive Info in IBM Infosphere Master Data Management

Severity
7.8HIGHNVD
EPSS
0.0%
top 93.38%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 19
Latest updateMay 13

Description

IBM InfoSphere Master Data Management Server 11.0 - 11.6 stores user credentials in plain in clear text which can be read by a local user. IBM X-Force ID: 125463.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-828m-7pfw-8m6p: IBM InfoSphere Master Data Management Server 112022-05-13
CVEList
CVE-2017-1309: IBM InfoSphere Master Data Management Server 112017-07-19

💥Exploits & PoCs

1
Exploit-DB
Microsoft Edge 38.14393.1066.0 - Memory Corruption with Partial Page Loading2017-09-19
CVE-2017-1309 — Cleartext Storage of Sensitive Info | cvebase