IBM InfoSphere Information Server 11.7 could allow a privileged user to obtain sensitive information from authentication request headers. IBM X-Force ID: 298277.
The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.
Link | Tags |
---|---|
https://www.ibm.com/support/pages/node/7160853 | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/298277 | vdb entry |