IBM i 7.2, 7.3, 7.4, 7.5, and 7.6 are impacted by obtaining an information vulnerability in the database plan cache implementation. A user with access to the database plan cache could see information they do not have authority to view.
The web application uses the HTTP GET method to process a request and includes sensitive information in the query string of that request.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| I | Ibm | 7.2 (including) | 7.2 (including) |
| I | Ibm | 7.3 (including) | 7.3 (including) |
| I | Ibm | 7.4 (including) | 7.4 (including) |
| I | Ibm | 7.5 (including) | 7.5 (including) |
| I | Ibm | 7.6 (including) | 7.6 (including) |