IBM InfoSphere Information Server 11.7 could allow a privileged user to obtain sensitive information from authentication request headers. IBM X-Force ID: 298277.
The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Infosphere_information_server | Ibm | 11.7 (including) | 11.7 (including) |
Infosphere_information_server | Ibm | 11.7.0.1 (including) | 11.7.0.1 (including) |
Infosphere_information_server | Ibm | 11.7.0.2 (including) | 11.7.0.2 (including) |