IBM Rational AppScan Enterprise Exported Report Information Disclosure Vulnerability
BID:34163
Info
IBM Rational AppScan Enterprise Exported Report Information Disclosure Vulnerability
| Bugtraq ID: | 34163 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 18 2009 12:00AM |
| Updated: | Mar 18 2009 03:36PM |
| Credit: | This issue was disclosed by the vendor. |
| Vulnerable: |
IBM Rational AppScan Enterprise 5.5 |
| Not Vulnerable: |
IBM Rational AppScan Enterprise 5.5 Fix Pack 1 |
Discussion
IBM Rational AppScan Enterprise Exported Report Information Disclosure Vulnerability
IBM Rational AppScan Enterprise is prone to an unspecified information-disclosure vulnerability.
Attackers can exploit this issue to obtain sensitive information that may aid in further attacks.
Versions prior to Rational AppScan Enterprise 5.5 Fix Pack 1 are vulnerable.
IBM Rational AppScan Enterprise is prone to an unspecified information-disclosure vulnerability.
Attackers can exploit this issue to obtain sensitive information that may aid in further attacks.
Versions prior to Rational AppScan Enterprise 5.5 Fix Pack 1 are vulnerable.
Exploit / POC
IBM Rational AppScan Enterprise Exported Report Information Disclosure Vulnerability
To exploit this issue, attackers can use readily available commands or network utilities.
To exploit this issue, attackers can use readily available commands or network utilities.
Solution / Fix
IBM Rational AppScan Enterprise Exported Report Information Disclosure Vulnerability
Solution:
The vendor has released updates. Please contact the vendor for details.
Solution:
The vendor has released updates. Please contact the vendor for details.
References
IBM Rational AppScan Enterprise Exported Report Information Disclosure Vulnerability
References:
References: