CVE-2015-7490

Description

IBM InfoSphere Information Server 8.5 through FP3, 8.7 through FP2, 9.1 through 9.1.2.0, 11.3 through 11.3.1.2, and 11.5 allows remote authenticated users to bypass intended access restrictions via a modified cookie.

Risk Information

Base Score
3.1
MODERATE
Vector
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
EPSS Score
Exploitation Probability
0.128

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in InfoSphere Information Server 8.5Windows
Multiple Vulnerabilities are affected in InfoSphere Information Server 8.5.0.1Windows
Multiple Vulnerabilities are affected in InfoSphere Information Server 8.5.0.2Windows
Multiple Vulnerabilities are affected in InfoSphere Information Server 8.7Windows
Multiple Vulnerabilities are affected in InfoSphere Information Server 9.1Windows
Multiple Vulnerabilities are affected in InfoSphere Information Server 8.5.0.3Windows
Multiple Vulnerabilities are affected in InfoSphere Information Server 8.7.0.1Windows
Multiple Vulnerabilities are affected in InfoSphere Information Server 8.7.0.2Windows
Multiple Vulnerabilities are affected in InfoSphere Information Server 9.1.0.1Windows
Multiple Vulnerabilities are affected in InfoSphere Information Server 9.1.2Windows
Multiple Vulnerabilities are affected in InfoSphere Information Server 11.3Windows
Vulnerabilities CVE-2015-1901,CVE-2015-7490,CVE-2016-0250,CVE-2016-6059 are affected in InfoSphere Information Server 11.3.1Windows
Multiple Vulnerabilities are affected in InfoSphere Information Server 11.5Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234