IBM WebSphere Application Server (IBM Liberty for Java for Bluemix 3.13)could allow a remote attacker to obtain sensitive information caused by improper error handling by MyFaces in JSF.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/132342 | vdb entry vendor advisory |
http://www.ibm.com/support/docview.wss?uid=swg22009704 | vendor advisory |
http://www.securityfocus.com/bid/101522 | vdb entry third party advisory |
http://www.securitytracker.com/id/1039695 | vdb entry third party advisory |