First published: Sun Mar 16 2014(Updated: )
Cross-site request forgery (CSRF) vulnerability in the XML Pack in IBM InfoSphere Information Server 8.5.x through 8.5 FP3, 8.7.x through 8.7 FP2, and 9.1.x through 9.1.2.0 allows remote attackers to hijack the authentication of arbitrary users.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Infosphere Information Server | =8.5 | |
Ibm Infosphere Information Server | =8.5.0.1 | |
Ibm Infosphere Information Server | =8.5.0.2 | |
Ibm Infosphere Information Server | =8.5.0.3 | |
Ibm Infosphere Information Server | =8.7 | |
Ibm Infosphere Information Server | =8.7.0.1 | |
Ibm Infosphere Information Server | =8.7.0.2 | |
Ibm Infosphere Information Server | =9.1 | |
Ibm Infosphere Information Server | =9.1.0.1 | |
Ibm Infosphere Information Server | =9.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.