Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xhw8-46vj-3gq5

Опубликовано: 17 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1

could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.

IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1

could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.

EPSS

Процентиль: 25%
0.00087
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-209

Связанные уязвимости

CVSS3: 4.3
nvd
около 1 года назад

IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.

EPSS

Процентиль: 25%
0.00087
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-209