CVE-2012-0701: Medium severity ibm datastage vulnerability
The client applications in the DataStage Administrator client in InfoSphere DataStage in IBM InfoSphere Information Server 8.1, 8.5 before FP3, and 8.7 rely on client-side access control, which allows remote authenticated users to gain privileges via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-0701?
CVE-2012-0701 is classified as a medium severity vulnerability due to its potential to allow unauthorized privilege escalation.
How do I fix CVE-2012-0701?
To fix CVE-2012-0701, upgrade to IBM InfoSphere DataStage versions 8.1 FP3, 8.5 or later, or 8.7.
Which versions of InfoSphere DataStage are affected by CVE-2012-0701?
CVE-2012-0701 affects IBM InfoSphere DataStage 8.1, 8.5 before FP3, and 8.7.
Can CVE-2012-0701 be exploited by insiders?
Yes, CVE-2012-0701 can be exploited by remote authenticated users, which unfortunately includes insiders.
What type of vulnerability is CVE-2012-0701?
CVE-2012-0701 is an access control vulnerability that relies on client-side controls.