CVE-2019-4257
Summary
| CVE | CVE-2019-4257 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-06-06 21:29:00 UTC |
| Updated | 2023-02-03 20:40:00 UTC |
| Description | IBM InfoSphere Information Server 11.5 and 11.7 is affected by an information disclosure vulnerability. Sensitive information in an error message may be used to conduct further attacks against the system. IBM X-Force ID: 159945. |
Risk And Classification
Problem Types: CWE-209
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ibm | Infosphere Information Analyzer | 11.5 | All | All | All |
| Application | Ibm | Infosphere Information Analyzer | 11.7 | All | All | All |
| Application | Ibm | Infosphere Information Analyzer | 11.5 | All | All | All |
| Application | Ibm | Infosphere Information Analyzer | 11.7 | All | All | All |
| Application | Ibm | Infosphere Information Governance Catalog | 11.5 | All | All | All |
| Application | Ibm | Infosphere Information Governance Catalog | 11.7 | All | All | All |
| Application | Ibm | Infosphere Information Governance Catalog | 11.5 | All | All | All |
| Application | Ibm | Infosphere Information Governance Catalog | 11.7 | All | All | All |
| Application | Ibm | Infosphere Information Server On Cloud | 11.5 | All | All | All |
| Application | Ibm | Infosphere Information Server On Cloud | 11.7 | All | All | All |
| Application | Ibm | Infosphere Information Server On Cloud | 11.5 | All | All | All |
| Application | Ibm | Infosphere Information Server On Cloud | 11.7 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Bulletin: IBM InfoSphere Information Analyzer and Information Governance Catalog is affected by an Information Disclosure vulnerability | CONFIRM | www.ibm.com | Patch, Vendor Advisory |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | VDB Entry, Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.