IBM i Access Client Solutions 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.3 could allow an attacker to obtain a decryption key due to improper authority checks. IBM X-Force ID: 268270.
The product stores sensitive information without properly limiting read or write access by unauthorized actors.
Link | Tags |
---|---|
https://www.ibm.com/support/pages/node/7091942 | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/268270 | vdb entry vendor advisory |