First published: Thu Jan 31 2013(Updated: )
The client in InfoSphere FastTrack 8.1 through 8.7 in IBM InfoSphere Information Server 8.1, 8.5 before FP3, and 8.7 does not properly store credentials, which allows local users to bypass intended access restrictions via unspecified vectors.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere FastTrack | =8.1 | |
IBM InfoSphere FastTrack | =8.1.1 | |
IBM InfoSphere FastTrack | =8.1.2 | |
IBM InfoSphere FastTrack | =8.5 | |
IBM InfoSphere FastTrack | =8.7 | |
IBM InfoSphere Information Server | =8.1 | |
IBM InfoSphere Information Server | =8.5 | |
IBM InfoSphere Information Server | =8.5.0.1 | |
IBM InfoSphere Information Server | =8.5.0.2 | |
IBM InfoSphere Information Server | =8.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-0700 is classified as a moderate severity vulnerability due to improper credential storage.
Fixing CVE-2012-0700 involves updating to the latest version of IBM InfoSphere FastTrack or Information Server that addresses the credential storage issue.
CVE-2012-0700 affects IBM InfoSphere FastTrack versions 8.1 through 8.7 and IBM InfoSphere Information Server versions 8.1 and 8.5 before FP3.
CVE-2012-0700 allows local users to bypass intended access restrictions through improper handling of credentials.
There are no documented workarounds for CVE-2012-0700; updating to a patched version is recommended.