Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jgg9-j8gm-7w7m

Опубликовано: 12 нояб. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

IBM OpenPages 9.0 and 9.1 is vulnerable to information disclosure of sensitive information due to a weaker than expected security for certain REST end points used by the user interface of OpenPages. An authenticated user is able to obtain certain information about system metadata for areas beyond what the user is intended to view.

IBM OpenPages 9.0 and 9.1 is vulnerable to information disclosure of sensitive information due to a weaker than expected security for certain REST end points used by the user interface of OpenPages. An authenticated user is able to obtain certain information about system metadata for areas beyond what the user is intended to view.

EPSS

Процентиль: 11%
0.00039
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-497

Связанные уязвимости

CVSS3: 4.3
nvd
3 месяца назад

IBM OpenPages 9.0 and 9.1 is vulnerable to information disclosure of sensitive information due to a weaker than expected security for certain REST end points used by the user interface of OpenPages. An authenticated user is able to obtain certain information about system metadata for areas beyond what the user is intended to view.

CVSS3: 4.3
fstec
3 месяца назад

Уязвимость платформы управления рисками на предприятии IBM OpenPages, связанная с раскрытием системных данных неавторизованной для контролируемой области, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 11%
0.00039
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-497