Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2mrh-8f77-q7p2

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM Security Key Lifecycle Manager 3.0.1 and 4.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 190290.

IBM Security Key Lifecycle Manager 3.0.1 and 4.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 190290.

EPSS

Процентиль: 44%
0.00217
Низкий

Дефекты

CWE-209

Связанные уязвимости

CVSS3: 2.7
nvd
около 5 лет назад

IBM Security Key Lifecycle Manager 3.0.1 and 4.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 190290.

EPSS

Процентиль: 44%
0.00217
Низкий

Дефекты

CWE-209