IBM CICS TX 11.1 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 229447.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
The product stores sensitive information without properly limiting read or write access by unauthorized actors.
Link | Tags |
---|---|
https://www.ibm.com/support/pages/node/6833156 | patch vendor advisory |
https://www.ibm.com/support/pages/node/6833150 | patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/229447 | vdb entry vendor advisory |