IBM Security Access Manager for Web could allow an unauthenticated user to gain access to sensitive information by entering invalid file names.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.ibm.com/support/docview.wss?uid=swg21995348 | patch vendor advisory |
http://www.securityfocus.com/bid/96124 | vdb entry |