CVE-2017-1765Sensitive Information Exposure in IBM Business Process Manager

Severity
4.3MEDIUMNVD
CNA3.1
EPSS
0.3%
top 44.60%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 30
Latest updateMay 13

Description

IBM Business Process Manager 8.6 could allow an authenticated user with special privileges to reveal sensitive information about the application server. IBM X-Force ID: 136150.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NExploitability: 2.8 | Impact: 1.4

Affected Packages3 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-m77j-4pv3-h3jj: IBM Business Process Manager 82022-05-13
CVEList
CVE-2017-1765: IBM Business Process Manager 82018-03-30
CVE-2017-1765 — Sensitive Information Exposure in IBM | cvebase