IBM InfoSphere Information Server contains a vulnerability that would allow an authenticated user to browse any file on the engine tier, and examine its contents.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/93557 | vdb entry third party advisory |
http://www.securitytracker.com/id/1037022 | vdb entry |
http://www.ibm.com/support/docview.wss?uid=swg21992171 | patch vendor advisory |