CVE-2012-0705: Input Validation
InfoSphere Import Export Manager in InfoSphere Information Server MetaBrokers & Bridges (MBB) in IBM InfoSphere Information Server 8.1, 8.5 before FP3, 8.7, and 9.1 does not validate unspecified input data, which allows remote authenticated users to execute arbitrary commands via unknown vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-0705?
CVE-2012-0705 is rated as a critical severity vulnerability due to the potential for remote command execution.
How do I fix CVE-2012-0705?
To fix CVE-2012-0705, users should update to the appropriate fix pack for their version of IBM InfoSphere Information Server as recommended by IBM.
What are the affected versions in CVE-2012-0705?
CVE-2012-0705 affects IBM InfoSphere Information Server versions 8.1, 8.5 before FP3, 8.7, and 9.1.
Who can exploit CVE-2012-0705?
CVE-2012-0705 can be exploited by remote authenticated users who can send specially crafted input data.
Is there a workaround for CVE-2012-0705?
Currently, the best practice is to apply the security updates provided by IBM for CVE-2012-0705 without known workarounds.